Description
In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10068463; Issue ID: MSV-4141.
Problem types
CWE-287 Improper Authentication - Generic
Product status
References
corp.mediatek.com/product-security-bulletin/November-2025