Out of Bounds Write Vulnerability in Geniezone Software by MediaTek
CVE-2026-20497

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
3 August 2026

What is CVE-2026-20497?

A vulnerability exists in MediaTek's Geniezone software due to a missing bounds check, leading to a possible out of bounds write scenario. This flaw may allow an attacker, who already has System privileges, to escalate their access without requiring user interaction. The issue has been identified and tracked under the Issue ID: MSV-6941, with patch IDs ALPS10965550 and ALPS11393405 available for remediation.

Affected Version(s)

MediaTek chipset MT6989

MediaTek chipset MT8755

MediaTek chipset MT8768

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.