VDB

CVE-2025-20789

CVE-2025-20789 PUBLISHED CVSS 4.400000095367432 MEDIUM

In GPU pdma, there is a possible information disclosure due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS10117741; Issue ID: MSV-4538.

EPSS 0.08% · 0.1th percentile

Risk Scores

CVSS 3.1
4.400000095367432
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
EPSS Score
0.08%
0.1th percentile

Affected Products

VendorProductVersions
googleandroid15.0
MediaTek, Inc.MT6781, MT6833, MT6853, MT6877, MT6893, MT8196Android 15.0,

Timeline

  • Nov 1, 2024 CVE ID Reserved
  • Dec 2, 2025 EPSS Score
  • Dec 2, 2025 CVE Published
  • Dec 2, 2025 CVE Updated
  • Dec 6, 2025 EPSS Score
  • Dec 11, 2025 EPSS Score
  • Dec 15, 2025 EPSS Score
  • Dec 20, 2025 EPSS Score
  • Dec 24, 2025 EPSS Score
  • Dec 29, 2025 EPSS Score
  • Jan 2, 2026 EPSS Score
  • Jan 7, 2026 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›