Out of Bounds Read Vulnerability in Mediatek Modem Products
CVE-2026-20540
Currently unrated
What is CVE-2026-20540?
A vulnerability exists in Mediatek modem products due to a lack of proper bounds checking, which can lead to an out of bounds read scenario. This flaw enables an attacker to potentially cause a remote denial of service if a user equipment connects to a malicious base station, without requiring any additional privileges or user interaction. The vulnerability presents significant risks to users connected to vulnerable devices, emphasizing the importance of prompt patching.
Affected Version(s)
MediaTek chipset MT2716
MediaTek chipset MT2735
MediaTek chipset MT2737
