MediaTek Modem Reachable Assertion Vulnerability Leading to Remote Denial-of-Service

Vulnerability

A vulnerability in the MediaTek modem chipsets can cause a system crash due to improper error handling. This issue could lead to a remote denial-of-service condition, particularly if a user equipment (UE) connects to a rogue base station controlled by an attacker. The vulnerability affects several MediaTek chipsets, including MT2735, MT6833, MT6833P, MT6853, MT6853T, MT6855, MT6855T, MT6873, MT6875, MT6875T, MT6877, MT6877T, MT6877TT, MT6880, MT6883, MT6885, MT6889, MT6890, MT6891, MT6893, MT8791T, and MT8797.

Impact

Exploitation of this vulnerability can cause a system crash, leading to a denial-of-service condition on the affected device.

Remediation

MediaTek has issued a patch for this vulnerability, which can be applied by device manufacturers. Instructions for applying the patch are available through MediaTek's official channels.

Added: Dec 2, 2025, 3:55 AM
Updated: Dec 2, 2025, 3:55 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
4.7
remediation
0.0
relevance
1.2
threat
0.0
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.