Input validation error in UNISOC products - CVE-2025-31718
Published: November 4, 2025
Vulnerability identifier: #VU117950
CSH Severity: Medium
CVSS v4: 8.7 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-31718
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input withinthe Modem component. A remote attacker can send specially crafted input to the device and perform a denial of service (DoS) attack.
Affected software
T606
T612
T616
T750
T765
T760
T770
T820
S8000
T8300
T9300
T612
T616
T750
T765
T760
T770
T820
S8000
T8300
T9300
How to mitigate CVE-2025-31718
Install updates from vendor's website.