Privilege Escalation Vulnerability in GenieZone by MediaTek
CVE-2026-20517

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
7 September 2026

What is CVE-2026-20517?

In the GenieZone product by MediaTek, a vulnerability exists that allows for potential privilege escalation through a use-after-free condition. This issue can be exploited by an attacker who has already achieved system-level privileges, enabling them to elevate their access without requiring user interaction. The problem necessitates prompt attention to ensure user security. The issue has been documented with Patch ID: ALPS10900510 and Issue ID: MSV-6781.

Affected Version(s)

MediaTek chipset MT6991

MediaTek chipset MT8755

MediaTek chipset MT8768

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.