MediaTek Chipsets Thermal Out-of-Bounds Write Vulnerability Allowing Privilege Escalation

Vulnerability

A race condition in the thermal component of certain MediaTek chipsets can lead to a out-of-bounds write. This vulnerability could allow local escalation of privilege, but requires that the malicious actor already has System privileges. The issue affects chipsets including MT2718, MT6878, MT6897, MT6899, MT6989, MT6991, MT8196, MT8391, MT8676, and MT8678, with vulnerable software versions including Android 14.0 and 15.0.

Impact

Exploitation of this vulnerability could result in unauthorized elevation of privileges, allowing a user to gain elevated rights or access within the system.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
7.5
exploitability
2.4
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.