Tag
#MediaTek
CVE-2026-20501: MediaTek Chipset Heap Buffer Overflow Vulnerability
A high-severity vulnerability (CVE-2026-20501, CVSS 8.4) exists in MediaTek chipsets, allowing local privilege escalation with no additional execution privileges needed. Multiple MediaTek chipset versions are affected. Apply patches immediately to mitigate this vulnerability.
CVE-2026-20467: Local Privilege Escalation in MediaTek Chipsets
A vulnerability in MediaTek chipsets could allow local escalation of privilege if a malicious actor has already obtained the System privilege. This vulnerability has a CVSS score of 6 and is not actively exploited. Affected products include MT8195, MT8196, and MT8366.
CVE-2026-20466: MediaTek Chipset Heap Buffer Overflow Vulnerability
A heap buffer overflow vulnerability (CVE-2026-20466) has been identified in MediaTek chipsets, specifically in the secure boot mechanism. This vulnerability could lead to local escalation of privilege if an attacker has physical access to the device. The CVSS score for this vulnerability is 6.1, indicating a medium severity. Affected chipsets include MT2737, MT6880, MT6890, and MT6990. Patches are available to mitigate this vulnerability.