6
CVE-2026-20474
- EPSS 0.09%
- Veröffentlicht 03.08.2026 02:05:28
- Zuletzt bearbeitet 19.08.2026 18:06:33
- CVE-Watchlists
- Unerledigt
In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019183; Issue ID: MSV-7758.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mediatek ≫ Mt6991 Firmware Version-
Mediatek ≫ Mt6993 Firmware Version-
Mediatek ≫ Mt8126 Firmware Version-
Mediatek ≫ Mt8171 Firmware Version-
Mediatek ≫ Mt8188 Firmware Version-
Mediatek ≫ Mt8189 Firmware Version-
Mediatek ≫ Mt8367 Firmware Version-
Mediatek ≫ Mt8668 Firmware Version-
Mediatek ≫ Mt8676 Firmware Version-
Mediatek ≫ Mt8678 Firmware Version-
Mediatek ≫ Mt8766 Firmware Version-
Mediatek ≫ Mt8768 Firmware Version-
Mediatek ≫ Mt8781 Firmware Version-
Mediatek ≫ Mt8786 Firmware Version-
Mediatek ≫ Mt8791t Firmware Version-
Mediatek ≫ Mt8799 Firmware Version-
Mediatek ≫ Mt8910 Firmware Version-
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.09% | 0.007 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| CISA-ADP | 6 | 0.8 | 5.2 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:N
|
CWE-367 Time-of-check Time-of-use (TOCTOU) Race Condition
The product checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check.
https://www.mediatek.com/product-security-bulletin/August-2026