CVE-2026-20491
—CVSS 3.1
5.5 medium
EPSS
<1%p1
Published
()
Modified
Description
In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981478 (Note: For MT6890, MT6990, MT6988) / AUTO00851173 (Note: For MT2735, MT2737); Issue ID: MSV-7652.
- Vendors
- mediatek
- Products
- mt2735 firmware, mt2737 firmware, mt6890 firmware, mt6988 firmware, mt6990 firmware
- Weakness
- CWE-787
- Vector
- CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
In the news0 stories
No ingested article mentions this CVE yet.