CVE-2025-20644
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Mar 3, 2025
Updated: Mar 4, 2025
CWE ID 1286
Summary
CVE-2025-20644 is a memory corruption vulnerability affecting Modem software. The flaw arises from incorrect error handling, potentially leading to remote denial of service (DoS) attacks. An attacker could exploit this issue by manipulating a rogue base station, requiring no additional execution privileges or user interaction. The vulnerability carries the IDs MOLY01525673 and MSV-2747, and a patch is available to mitigate the risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- Mediatek Inc.