MediaTek WLAN Integer Overflow Vulnerability Leading to Out-of-Bounds Write and Privilege Escalation

Vulnerability

A vulnerability has been identified in the MediaTek WLAN Access Point (AP) driver, where an integer overflow can lead to an out-of-bounds write. This vulnerability allows for remote (proximal/adjacent) escalation of privilege, with no additional execution privileges required. Exploitation does not require user interaction.

Impact

Exploitation of this vulnerability could result in unauthorized privilege escalation.

Remediation

Device OEMs have been notified of this vulnerability and the corresponding security patches are available. For further information, OEMs can contact their MediaTek representative.

Added: Oct 14, 2025, 10:36 AM
Updated: Oct 14, 2025, 2:32 PM

Vulnerability Rating

Custom Algorithm
spread
8.1
impact
7.5
exploitability
4.9
remediation
0.0
relevance
0.7
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.