Out of Bounds Write Vulnerability in MediaTek Battery Software
CVE-2026-20529

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
5 October 2026

What is CVE-2026-20529?

A vulnerability exists within MediaTek's battery software, allowing for a potential out of bounds write due to an insufficient bounds check. This issue could facilitate local escalation of privilege for an attacker who has already gained System privilege. Notably, user interaction is not required for this vulnerability to be exploited, heightening the risk of its impact. For mitigation, refer to Patch ID: ALPS11276677 and Issue ID: MSV-9217 in the associated security bulletin.

Affected Version(s)

MediaTek chipset MT6761

MediaTek chipset MT6765

MediaTek chipset MT6768

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.