PT-2026-67166 · Mediatek · Audio Hal

CVE-2026-20478

·

Published

2026-08-03

·

Updated

2026-08-03

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions MediaTek Audio HAL (affected versions not specified)
Description An out of bounds write exists in the Audio HAL due to a heap buffer overflow. A heap buffer overflow occurs when a program writes more data to a heap-allocated memory block than it can hold. This issue can lead to a local denial of service and requires user execution privileges, although no user interaction is necessary for exploitation.
Recommendations Apply patch ALPS10981454 for MT6880, MT6890, MT6988, and MT6990. Apply patch AUTO00851293 for MT2735 and MT2737.

Fix

DoS

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-20478

Affected Products

Audio Hal