Out of Bounds Write Vulnerability in MediaTek Devices
CVE-2026-20544

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
5 October 2026

What is CVE-2026-20544?

A vulnerability exists within MediaTek devices that may allow an out of bounds write due to inadequate bounds checking. This flaw could enable local escalation of privileges if an attacker gains physical access to the device, without requiring additional execution privileges. The exploitation of this vulnerability does not necessitate user interaction, making it a significant security concern that needs addressing through timely patching. The referenced patches include ID ALPS11049530 and ALPS11480843.

Affected Version(s)

MediaTek chipset MT6739

MediaTek chipset MT6761

MediaTek chipset MT6765

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.