Memory Corruption in MediaTek Products
CVE-2026-20444
6.7MEDIUM
What is CVE-2026-20444?
A memory corruption vulnerability has been identified in MediaTek's software, associated with an insufficient bounds check in the display functionality. This flaw could allow a malicious actor with system privileges to escalate local privileges, potentially compromising system integrity. Notably, exploitation does not require user interaction. MediaTek has issued a patch (ID: ALPS10436995) to address this vulnerability, detailed in their March 2026 security bulletin.
Affected Version(s)
MediaTek chipset MT6739
MediaTek chipset MT6761
MediaTek chipset MT6765
