PT-2025-15170 · Da · Da

Published

2025-04-07

·

Updated

2026-01-31

·

CVE-2025-20658

CVSS v3.1

6.0

Medium

VectorAV:P/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:L
Name of the Vulnerable Software and Affected Versions DA (affected versions not specified)
Description The issue is a permission bypass in the DA component due to a logic error. Exploitation allows a local escalation of privilege if an attacker has physical access to the device, without requiring additional execution privileges or user interaction. The patch ID associated with the fix is ALPS09474894 and the issue ID is MSV-2597.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Memory Corruption

Weakness Enumeration

Related Identifiers

ASB-A-393950964
BDU:2025-14885
CVE-2025-20658
M-ALPS09474894

Affected Products

Da