MediaTek WLAN STA Driver Out-of-Bounds Write Vulnerability Allowing Remote Code Execution

Vulnerability

A vulnerability has been identified in the MediaTek WLAN STA driver, where improper input validation creates a potential out-of-bounds write condition. This vulnerability could be exploited to execute code remotely (or from a proximal/adjacent position) without requiring additional execution privileges. Notably, user interaction is not necessary for exploitation. The issue affects various chipsets, including MT2737, MT3603, MT6835, MT6878, MT6886, MT6897, MT6990, MT7902, MT7920, MT7922, MT8365, MT8518S, MT8532, MT8666, MT8667, MT8673, MT8755, MT8766, MT8768, MT8775, MT8781, MT8786, MT8788, MT8796, MT8798, and MT8893. The vulnerability is present in the Android operating system versions 13.0, 14.0, and 15.0, as well as in the Yocto versions 3.3, 4.0, and 5.0.

Impact

Exploitation of this vulnerability could lead to remote code execution, allowing an attacker to execute arbitrary code on the affected device.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM