ZeroHour

CVE-2026-20446

CVSS 3.1
4.3 medium
EPSS
<1%p9
Published
()
Modified
Description

In sec boot, there is a possible out of bounds write due to an integer overflow. This could lead to local denial of service, if an attacker has physical access to the device, with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09963054; Issue ID: MSV-3899.

Vendors
mediatek
Products
mt6813 firmware
Weakness
CWE-787, CWE-190
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.