Skip to content
CodeAuditAgent

CVE-2026-20504

In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00755024; Issue ID: MSV-7865.

Weakness

In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00755024; Issue ID: MSV-7865.

Affected products

  • mediatek mt2735_firmware
  • mediatek mt2735
  • mediatek mt6833_firmware
  • mediatek mt6833
  • mediatek mt6853_firmware
  • mediatek mt6853
  • mediatek mt6855_firmware
  • mediatek mt6855

References

Find the bug before an attacker does.

Sign in with GitHub and run your first audit in under a minute. The free plan needs no credit card.