Memory Corruption Flaw in SurfaceFlinger Affects MediaTek Products
CVE-2026-20511

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
7 September 2026

What is CVE-2026-20511?

A memory corruption issue has been identified in SurfaceFlinger, attributed to a use-after-free condition. This vulnerability allows an attacker who has already gained System privilege to escalate their privileges further without needing user interaction. This poses a significant risk to security in environments utilizing affected MediaTek products. Affected users are encouraged to update to the latest patch, ID ALPS11123860, to mitigate this risk.

Affected Version(s)

MediaTek chipset MT6858

MediaTek chipset MT6881

MediaTek chipset MT6993

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.