CVE-2025-20664: MediaTek MT7915
High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00406217; Issue ID: MSV-2773.
Affected products
- MediaTek MT7915
- MediaTek MT7916
- MediaTek MT7981
- MediaTek MT7986
- MediaTek MT7990
- MediaTek MT7992
- MediaTek Software Development Kit: up to and including 7.4.0.1; up to and including 7.6.7.2; up to and including 8.2.1.4
Published 2025-04-07. Last modified 2026-06-17.