Home

Description

In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01738310; Issue ID: MSV-5933.

PUBLISHED Reserved 2025-11-03 | Published 2026-02-02 | Updated 2026-03-30 | Assigner MediaTek

Problem types

CWE-617 Reachable Assertion

Product status

Default status
unaffected

MT2735
affected

MT6833
affected

MT6853
affected

MT6855
affected

MT6873
affected

MT6875
affected

MT6877
affected

MT6880
affected

MT6883
affected

MT6885
affected

MT6889
affected

MT6890
affected

MT6891
affected

MT6893
affected

MT8675
affected

MT8771
affected

MT8791
affected

MT8791T
affected

MT8797
affected

References

corp.mediatek.com/product-security-bulletin/February-2026

cve.org (CVE-2026-20401)

nvd.nist.gov (CVE-2026-20401)

Download JSON