Disclosure summary
An attacker sending a malformed SIP message over VoLTE to a device with a Mediatek baseband can trigger the vulnerability described here. This report describes an unbounded recursi
Source-specific records & product guidance
Sources retain their own attribution and scoring. Follow the original record to confirm affected versions, fixed releases, and configuration conditions.
Taszk Labs on taszk.io labs · RSS-2543692bbf00adc1af9beeb52f5ee7febd2
Open original source · Updated Sep 30, 2025
MSV-4629: Mediatek Baseband Malformed Audio Attribute for RTP/AVP Leads to Denial of Service
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-3a8bc1d5d06cb6c5ccb86673abac628d8ca
Open original source · Updated Sep 30, 2025
CVE-2025-20727: Mediatek Baseband Heap Overflow During Parsing SIP Authentication-Info Header
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-56f1f367a0624ccf2422dc0e9dceaf87039
Open original source · Updated Sep 30, 2025
MSV-4621: Mediatek Baseband Empty Multipart SMS Leading to Denial of Service
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-7bbcae3ed595a64f8360283d87392456735
Open original source · Updated Sep 30, 2025
CVE-2025-20725: Mediatek Baseband Heap Overflow in inet_msg_unpack_addr
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-a16bf9c09388fdbb8b84fa2fa2b64b065ab
Open original source · Updated Sep 30, 2025
CVE-2025-20678: Mediatek Baseband Unbounded Recursion Leading to Stack Overflow During Handling XML Payload
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-b1c9654022ba75fa7282cf606143935f29d
Open original source · Updated Sep 30, 2025
CVE-2025-20726: Mediatek Baseband Heap Overflow in inet_msg_unpack_uri_with_len
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-c78ad1f26ba99fc04a4f854ace0035fb1fb
Open original source · Updated Sep 30, 2025
MSV-4625: Mediatek Baseband Denial of Service During Parsing Invalid Accept header
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-d1d39bdda8c38a09fd9abb87efd2e255730
Open original source · Updated Sep 30, 2025
MSV-4626: Mediatek Baseband Null Dereference in inet_msg_unpack_generic_header
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-db435d128a238cf1b4b099c0494ebb503bb
Open original source · Updated Sep 30, 2025
MSV-4624: Mediatek Baseband Memory Leak with invalid SDP line
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-f30bbde995592149882294dfd7fa2b5cb89
Open original source · Updated Sep 30, 2025
MSV-4627: Mediatek Baseband Null Dereference During Parsing Empty SDP Bandwidth Field
CVE mention in publisher metadata; check the original affected versions.
Taszk Labs on taszk.io labs · RSS-f96cda5933ca99305264ecf3b0172d27a76
Open original source · Updated Sep 30, 2025
MSV-4628: Mediatek Baseband NULL Dereference in sdp_msg_pack_media Leading to Denial of Service
CVE mention in publisher metadata; check the original affected versions.
Original records & references
- NIST NVD record
- CVE Program record
- labs.taszk.io — Publisher advisory
PUBLISHED 2025-09-30T20:00:00-04:00
MODIFIED 2025-09-30T20:00:00-04:00
INGESTED 2026-10-08T12:20:18-04:00