Home

Description

In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01106496; Issue ID: MSV-4467.

PUBLISHED Reserved 2025-11-03 | Published 2026-04-07 | Updated 2026-04-07 | Assigner MediaTek

Problem types

CWE-770 Allocation of Resources Without Limits or Throttling

Product status

Default status
unaffected

MT6813
affected

MT6815
affected

MT6835
affected

MT6878
affected

MT6897
affected

MT6899
affected

MT6986
affected

MT6991
affected

MT6993
affected

MT8668
affected

MT8676
affected

MT8678
affected

MT8755
affected

MT8775
affected

MT8792
affected

MT8793
affected

MT8863
affected

MT8873
affected

MT8883
affected

References

corp.mediatek.com/product-security-bulletin/April-2026

cve.org (CVE-2026-20431)

nvd.nist.gov (CVE-2026-20431)

Download JSON