CVE-2025-20788
In GPU pdma, there is a possible memory corruption due to a missing permission check. This could lead to local denial of service with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: ALPS10117735; Issue ID: MSV-4539.
Scoring
- CVSS base score
- 0
- EPSS probability
- 0.07%
- CWE
- CWE-1262
- Published
- 2025-12-02
- Last modified
- 2026-03-12
Affected products
- MediaTek, Inc. MT6991, MT8196
Weakness type
Related vulnerabilities
- CVE-2025-54509 — Improper access control for register interface in the input-output memory management unit (IOMMU)...
- CVE-2025-47385 — Improper Access Control for Register Interface in SCE-Mink
- CVE-2025-36194 — This Power System update is being released to address
- CVE-2023-20599 — Improper register access control in ASP may allow a privileged attacker to perform unauthorized...
- CVE-2024-45556 — Improper Access Control for Register Interface in TZ Firmware
- CVE-2025-1882 — i-Drive i11/i12 Device Setting improper access control for register interface
- CVE-2022-23005 — Host Boot ROM Code Vulnerability in Systems Implementing UFS Boot Feature