Executive brief
A vulnerability in the modem component of various MediaTek chipsets could allow an attacker to gain elevated system privileges. These chipsets are used in a wide range of mobile devices to manage cellular connectivity. If an attacker already has basic system access, they could exploit this flaw to bypass security permissions and take deeper control of the device without any user interaction.
Technical details
A permissions bypass vulnerability (CWE-280) exists in the Modem component of multiple MediaTek chipsets. The flaw allows a local attacker who has already obtained 'System' level privileges to further escalate their authority. Exploitation does not require user interaction. The vulnerability affects a broad range of MT-series chipsets, including various 4G and 5G models. MediaTek has released a patch under Patch ID MOLY01716533 to address this issue.
Affected products
- MediaTek, Inc. MediaTek chipset MT2716, MT2735, MT2737, MT6739, MT6761, MT6762, MT6763, MT6765, MT6767, MT6768, MT6769, MT6771, MT6779, MT6781, MT6783, MT6785, MT6789, MT6813, MT6833, MT6835, MT6853, MT6855, MT6858, MT6873, MT6875, MT6877, MT6878, MT6879, MT6880, MT6881, MT6883, MT6885, MT6886, MT6889, MT6890, MT6891, MT6893, MT6895, MT6896, MT6897, MT6899, MT6980, MT6982, MT6983, MT6985, MT6986, MT6986D, MT6988
Timeline
- 2026-07-01: advisory: Published by MediaTek and NVD
- 2026-07-01: patched: Patch ID MOLY01716533 released