MediaTek Chipsets Privilege Escalation Vulnerability in Flash Tool V5 DA

Vulnerability

A vulnerability allowing local escalation of privilege has been identified in MediaTek chipsets through a possible out-of-bounds write. This issue arises from a missing bounds check, which could be exploited if an attacker has physical access to the device. The vulnerability affects several chipsets, including MT6739, MT6761, MT6765, MT6768, MT6771, MT6779, MT6781, MT6785, MT6833, MT6853, MT6873, MT6877, MT6885, MT6893, MT8167, MT8167S, MT8175, MT8185, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8395, MT8666, MT8667, MT8673, MT8675, MT8678, MT8765, MT8766, MT8768, MT8771, MT8775, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8795T, MT8797, MT8798, MT8893. The affected software versions include Android 12.0, 13.0, 14.0, 15.0, as well as openWRT 19.07, 21.02, 23.05, and Yocto 4.0.

Impact

Exploitation of this vulnerability could lead to unauthorized privilege escalation, allowing a user to gain elevated rights or access on the device.

Reproduction

The vulnerability can be reproduced by accessing a device with the affected MediaTek chipsets and software versions. Physical access to the device is required, and the vulnerability can be exploited with user interaction.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
7.5
exploitability
4.8
remediation
7.9
relevance
0.0
threat
1.6
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.