CVE-2025-20670 | MediaTek MT8798 NR16/NR17/NR17R Modem certificate validation (MSV-2772 / MOLY01334347)
A vulnerability was found in MediaTek MT2737, MT6813, MT6835, MT6835T, MT6878, MT6878M, MT6879, MT6886, MT6895, MT6895TT, MT6896, MT6897, MT6899, MT6980, MT6980D, MT6983, MT6983T, MT6985, MT6985T, MT6989, MT6989T, MT6990, MT6991, MT8666, MT8667, MT8673, MT8675, MT8676, MT8678, MT8765, MT8766, MT8768, MT8771, MT8781, MT8786, MT8788, MT8788E, MT8789, MT8791, MT8791T, MT8795T, MT8797 and MT8798 NR16/NR17/NR17R. It has been rated as critical. This issue affects some unknown processing of the component Modem. Performing a manipulation results in improper certificate validation.
This vulnerability is reported as CVE-2025-20670. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to install a patch to address this issue.