Type Confusion Vulnerability in Mediatek's MTee Product
CVE-2026-20587

Currently unrated

Key Information:

Vendor

MediaTek

Vendor
CVE Published:
5 October 2026

What is CVE-2026-20587?

A type confusion vulnerability exists in Mediatek's MTee product, allowing a malicious actor with System privilege to escalate their access without requiring user interaction. This escalation of privilege could grant unauthorized access to sensitive areas of the system, potentially leading to further exploitation or compromise.

Affected Version(s)

MediaTek chipset MT2718

MediaTek chipset MT6768

MediaTek chipset MT6769

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.