Home

Description

In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10828685; Issue ID: MSV-6504.

PUBLISHED Reserved 2025-11-03 | Published 2026-05-04 | Updated 2026-05-05 | Assigner MediaTek

Problem types

CWE-843 Access of Resource Using Incompatible Type ('Type Confusion')

Product status

Default status
unaffected

MT2718
affected

MT6899
affected

MT6985
affected

MT6989
affected

MT6991
affected

MT8115
affected

MT8186
affected

MT8188
affected

MT8196
affected

MT8365
affected

MT8367
affected

MT8370
affected

MT8371
affected

MT8390
affected

MT8391
affected

MT8395
affected

MT8676
affected

MT8678
affected

MT8766
affected

MT8768
affected

MT8775
affected

MT8781
affected

MT8786
affected

MT8788E
affected

MT8791T
affected

MT8792
affected

MT8793
affected

MT8796
affected

MT8873
affected

MT8883
affected

MT8893
affected

MT8910
affected

References

corp.mediatek.com/product-security-bulletin/May-2026

cve.org (CVE-2026-20451)

nvd.nist.gov (CVE-2026-20451)

Download JSON