Privilege Escalation Vulnerability in MediaTek Camera Middleware
CVE-2026-20510

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
7 September 2026

What is CVE-2026-20510?

A vulnerability exists in MediaTek's camera middleware that allows a malicious actor to exploit a double free condition, potentially leading to local privilege escalation. This issue can be exploited without requiring user interaction, posing a risk to systems where the attacker has already gained system-level permissions. Mitigation measures include applying the provided patch (ALPS11134622) to safeguard affected products.

Affected Version(s)

MediaTek chipset MT6761

MediaTek chipset MT6765

MediaTek chipset MT6768

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.