Medium severity6.5NVD Advisory· Published Mar 3, 2025· Updated Jun 17, 2026
CVE-2025-20649
CVE-2025-20649
Description
In Bluetooth Stack SW, there is a possible information disclosure due to a missing permission check. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00396437; Issue ID: MSV-2184.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- MediaTek, Inc./MT6880, MT6890, MT6980, MT6990, MT7663, MT7902, MT7925, MT7927, MT7961v5Range: SDK release 3.6 and before / openWRT 23.05
- cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:*Range: <=3.6
Patches
Vulnerability mechanics
References
1- corp.mediatek.com/product-security-bulletin/March-2025nvdVendor Advisory
News mentions
0No linked articles in our index yet.