Mediatek Mt2735 Firmware — known CVE vulnerabilities
Every CVE whose affected-product data names Mediatek Mt2735 Firmware, ordered by CVSS severity, with EPSS exploit prediction and CISA KEV status.
CVEs (10)
CVE-2026-20433 — CVSS 8.8 (high): In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE…
CVE-2026-20432 — CVSS 8.0 (high): In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE…
CVE-2026-20479 — CVSS 7.5 (high): In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has…
CVE-2026-20449 — CVSS 6.5 (medium): In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has…
CVE-2025-20659 — CVSS 6.5 (medium): In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has…
CVE-2026-20450 — CVSS 6.5 (medium): In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has…
CVE-2026-20492 — CVSS 5.5 (medium): In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with…
CVE-2026-20478 — CVSS 5.5 (medium): In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User…
CVE-2026-20480 — CVSS 5.5 (medium): In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User…
CVE-2026-20491 — CVSS 5.5 (medium): In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User…