CVE-2026-20491
Summary
| CVE | CVE-2026-20491 |
|---|---|
| State | PUBLISHED |
| Assigner | MediaTek |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2026-08-03 03:16:44 UTC |
| Updated | 2026-08-19 15:08:11 UTC |
| Description | In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981478 (Note: For MT6890, MT6990, MT6988) / AUTO00851173 (Note: For MT2735, MT2737); Issue ID: MSV-7652. |
Risk And Classification
Primary CVSS: v3.1 5.5 MEDIUM from ADP
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS: 0.001020000 probability, percentile 0.010800000 (date 2026-08-19)
Problem Types: CWE-787 | CWE-787 CWE-787 Out-of-bounds Write
| Version | Source | Type | Score | Severity | Vector |
|---|---|---|---|---|---|
| 3.1 | ADP | DECLARED | 5.5 | MEDIUM | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
| 3.1 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 | Secondary | 5.5 | MEDIUM | CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
CVSS v3.1 Breakdown
Attack Vector
LocalAttack Complexity
LowPrivileges Required
LowUser Interaction
NoneScope
UnchangedConfidentiality
NoneIntegrity
NoneAvailability
HighCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Mediatek | Mt2735 | - | All | All | All |
| Operating System | Mediatek | Mt2735 Firmware | - | All | All | All |
| Hardware | Mediatek | Mt2737 | - | All | All | All |
| Operating System | Mediatek | Mt2737 Firmware | - | All | All | All |
| Hardware | Mediatek | Mt6890 | - | All | All | All |
| Operating System | Mediatek | Mt6890 Firmware | - | All | All | All |
| Hardware | Mediatek | Mt6988 | - | All | All | All |
| Operating System | Mediatek | Mt6988 Firmware | - | All | All | All |
| Hardware | Mediatek | Mt6990 | - | All | All | All |
| Operating System | Mediatek | Mt6990 Firmware | - | All | All | All |
Vendor Declared Affected Products
| Source | Vendor | Product | Version | Platforms |
|---|---|---|---|---|
| CNA | MediaTek Inc. | MediaTek Chipset | affected MT2735 | Not specified |
| CNA | MediaTek Inc. | MediaTek Chipset | affected MT2737 | Not specified |
| CNA | MediaTek Inc. | MediaTek Chipset | affected MT6890 | Not specified |
| CNA | MediaTek Inc. | MediaTek Chipset | affected MT6988 | Not specified |
| CNA | MediaTek Inc. | MediaTek Chipset | affected MT6990 | Not specified |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| www.mediatek.com/product-security-bulletin/August-2026 | [email protected] | www.mediatek.com | Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.