VDB
CVE-2025-20705
CVE-2025-20705
PUBLISHED
CVSS 7.800000190734863 HIGH
In monitor_hang, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09989078; Issue ID: MSV-3964.
EPSS 0.09% · 0.6th percentile
Risk Scores
CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS Score
0.09%
0.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| MediaTek, Inc. | MT2718, MT2735, MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6880, MT6883, MT6885, MT6886, MT6889, MT6890, MT6893, MT6895, MT6897, MT6899, MT6980D, MT6983, MT6985, MT6989, MT6990, MT6991, MT8169, MT8186, MT8188, MT8676, MT8678, MT8696, MT8775, MT8792, MT8796 | Android 13.0, 14.0, 15.0, 16.0 / openWRT 19.07, 21.02 / Yocto 2.6 |
| android | 15.0, 16.0, 13.0 | |
| openwrt | openwrt | 21.02.0, 19.07.0 |
| linuxfoundation | yocto | 2.6 |
Timeline
- Nov 1, 2024 CVE ID Reserved
- Sep 1, 2025 EPSS Score
- Sep 1, 2025 Coalition ESS Score
- Sep 1, 2025 CVE Published
- Sep 1, 2025 PoC Published
- Sep 1, 2025 PoC Published
- Sep 2, 2025 Coalition ESS Score
- Sep 3, 2025 Coalition ESS Score
- Sep 9, 2025 EPSS Score
- Sep 16, 2025 EPSS Score
- Sep 24, 2025 EPSS Score
- Oct 2, 2025 EPSS Score