ZeroHour

CVE-2026-20454

CVSS 3.1
6.4 medium
EPSS
<1%p0
Published
()
Modified
Description

In geniezone, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10873936; Issue ID: MSV-6786.

Vendors
mediatek
Products
mt8673 firmware, mt8765 firmware, mt8766 firmware, mt8768 firmware, mt8781 firmware, mt8786 firmware, mt8788 firmware, mt8791t firmware, mt8793 firmware, mt8797 firmware, mt8798 firmware, mt8910 firmware
Weakness
CWE-367
Vector
CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.