PT-2026-67154 · Mediatek · Mt6890+3

CVE-2026-20466

·

Published

2026-08-03

·

Updated

2026-08-03

CVSS v3.1

6.1

Medium

VectorAV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions MT2737 (affected versions not specified) MT6880 (affected versions not specified) MT6890 (affected versions not specified) MT6990 (affected versions not specified)
Description A heap buffer overflow in sec boot allows for local escalation of privilege. This occurs when an attacker has physical access to the device, requiring no additional execution privileges or user interaction.
Recommendations Apply patch AUTO00845351 for MT2737. Apply patch ALPS11072643 for MT6880. Apply patch ALPS11072643 for MT6890. Apply patch ALPS11072643 for MT6990.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-20466

Affected Products

Mt2737
Mt6880
Mt6890
Mt6990