Mediatek

    Dashboard / Vendors

    Products: 602
    Vulnerabilities: 1074
    Known Exploited: 1
    39
    Critical Level Threats
    205
    High Level Threats
    825
    Medium Level Threats
    5
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-20507

    In Audio HAL, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11191981; Issue ID: MSV-9125.

    Last Modified: Sep 07, 2026
    Published: Sep 07, 2026

    CVE-2026-20516

    In MiracastService, there is a possible escalation of privilege due to a confused deputy. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11060069 / DTV04881615; Issue ID: MSV-7882.

    Last Modified: Sep 07, 2026
    Published: Sep 07, 2026

    CVE-2026-20504

    Modem Bounds Check Omission Causing Remote Denial of Service on MediaTek Chipsets

    Last Modified: Sep 09, 2026
    Published: Sep 07, 2026

    CVE-2026-20503

    In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01371002; Issue ID: MSV-9020.

    Last Modified: Sep 09, 2026
    Published: Sep 07, 2026

    CVE-2026-20502

    In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11262030; Issue ID: MSV-9196.

    Last Modified: Sep 09, 2026
    Published: Sep 07, 2026
    Items Per Page