Security Advisory

CVE-2025-20722

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-10-14 09:11:48
Last updated 2025-10-14 14:04:29
Assigner MediaTek
State PUBLISHED

Description

In gnss driver, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS09920036; Issue ID: MSV-3798.