CVE-2025-20703
7.5MediaTek · Modem
An out of bounds read vulnerability in the MediaTek modem firmware allows for a remote denial of service when connected to a rogue base station.
Executive summary
A critical out of bounds read vulnerability in multiple MediaTek modem chipsets allows an attacker to trigger a remote denial of service condition without user interaction.
Vulnerability
This vulnerability is an out of bounds read (CWE-125) caused by an incorrect bounds check within the modem firmware. An unauthenticated attacker can trigger this flaw by enticing a user device to connect to a malicious or rogue base station, resulting in a denial of service.
Business impact
Successful exploitation of this vulnerability results in a denial of service, rendering the device modem unresponsive. Given the CVSS score of 7.5, this high severity flaw poses a significant operational risk to mobile communications, potentially causing widespread connectivity loss for affected devices. Organizations relying on these chipsets for critical field communications or mobile operations may experience significant downtime and loss of service availability.
Remediation
Immediate Action: Apply the vendor-provided firmware update (Patch ID: MOLY01599794) as soon as it is made available by the device manufacturer or carrier.
Proactive Monitoring: Monitor device logs for unexpected modem resets or connectivity drops that occur in the absence of known signal issues.
Compensating Controls: While direct mitigation is limited for modem firmware, ensure devices are configured to prefer trusted networks and restrict roaming capabilities where possible to reduce exposure to unauthorized base stations.
Exploitation status
Public Exploit Available: Unknown.
Analyst recommendation
Organizations should prioritize the deployment of this firmware update across all affected mobile hardware. Because this vulnerability targets the low level modem firmware, standard software patching processes may not suffice, and coordination with mobile service providers or hardware vendors is essential to ensure the fix is applied.