MediaTek Chipsets Flash Tool V5 DA Out-of-Bounds Write Vulnerability Allowing Local Privilege Escalation

Vulnerability

A vulnerability has been identified in the Flash Tool V5 DA related to certain MediaTek chipsets. This issue stems from a missing bounds check, which creates a potential out-of-bounds write condition. If exploited, this vulnerability could lead to local escalation of privileges. The exploitation requires physical access to the device and user interaction. The affected chipsets include MT6739, MT6761, MT6765, MT6768, MT6771, MT6779, MT6781, MT6785, MT6833, MT6853, MT6873, MT6877, MT6885, MT6893, MT8167, MT8167S, MT8175, MT8185, MT8195, MT8321, MT8362A, MT8365, MT8385, MT8395, MT8666, MT8667, MT8673, MT8675, MT8678, MT8765, MT8766, MT8768, MT8771, MT8775, MT8781, MT8786, MT8788, MT8789, MT8791T, MT8795T, MT8797, MT8798, MT8893. This vulnerability affects several different software versions, including Android 12.0, 13.0, 14.0, 15.0, as well as openWRT 19.07, 21.02, 23.05, Yocto 4.0, and RDK-B 22Q3, 24Q1.

Impact

Exploitation of this vulnerability could lead to unauthorized local privilege escalation on the affected device.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
8.4
impact
5.0
exploitability
4.7
remediation
6.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.