Memory Corruption Flaw in SurfaceFlinger Affects MediaTek Products
CVE-2026-20511
Currently unrated
What is CVE-2026-20511?
A memory corruption issue has been identified in SurfaceFlinger, attributed to a use-after-free condition. This vulnerability allows an attacker who has already gained System privilege to escalate their privileges further without needing user interaction. This poses a significant risk to security in environments utilizing affected MediaTek products. Affected users are encouraged to update to the latest patch, ID ALPS11123860, to mitigate this risk.
Affected Version(s)
MediaTek chipset MT6858
MediaTek chipset MT6881
MediaTek chipset MT6993
