MediaTek chipset vulnerability

In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01371002; Issue ID: MSV-9020.

Published 7 Sep 2026Updated 7 Sep 20261 sources
CVSS 0.0

What happened

In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01371002; Issue ID: MSV-9020.

Affected versions

MediaTek chipset: MT2716; MT2735; MT2737; MT6813; MT6833; MT6835; MT6853; MT6855; MT6858; MT6873; MT6875; MT6877; MT6878; MT6879; MT6880; MT6881; MT6883; MT6885; MT6886; MT6889; MT6890; MT6891; MT6893; MT6895; MT6896; MT6897; MT6899; MT6980; MT6982VB; MT6983; MT6985; MT6986; MT6988; MT6989; MT6990; MT6991; MT6993; MT8668; MT8673; MT8675; MT8676; MT8678; MT8755; MT8771; MT8775; MT8791; MT8791T; MT8792; MT8793; MT8795T; MT8796; MT8797; MT8798; MT8863; MT8873; MT8883; MT8893 Fixed: See vendor advisory.

Why it matters

Review the vendor advisory and exposure of the affected product to determine operational impact.

Detection & mitigation

  • Apply vendor-provided updates or mitigations.
  • Review affected product exposure and access logs.

Public PoC references

No public PoC reference has passed the current publication threshold.