MediaTek Modem Chipsets Remote Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the modem component of various MediaTek chipsets, including MT2735, MT2737, MT6813, MT6815, MT6833, MT6835, MT6853, MT6855, MT6858, MT6873, MT6875, MT6877, MT6878, MT6879, MT6880, MT6883, MT6885, MT6886, MT6889, MT6890, MT6891, MT6893, MT6895, MT6896, MT6897, MT6899, MT6980, MT6983, MT6985, MT6986, MT6989, MT6990, MT6991, MT6993, MT8676, MT8791, MT8791T, MT8795T, MT8797, MT8798, MT8893. The vulnerability arises from a missing bounds check, which can lead to a system crash. Exploitation is possible if a user equipment (UE) connects to a rogue base station controlled by an attacker, without requiring any additional execution privileges or user interaction.

Impact

Exploitation of this vulnerability can cause a system crash, leading to a denial-of-service condition.

Remediation

MediaTek has released patches for this vulnerability. Instructions for applying the patch can be obtained from the MediaTek contact person.

Added: Feb 2, 2026, 9:38 AM
Updated: Feb 2, 2026, 9:38 AM

Vulnerability Rating

Custom Algorithm
spread
7.8
impact
2.5
exploitability
4.3
remediation
0.0
relevance
2.6
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.