PT-2026-67176 · Mediatek · Mediatek Display

CVE-2026-20489

·

Published

2026-08-03

·

Updated

2026-08-03

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions MediaTek Display (affected versions not specified)
Description An integer overflow in the display component can lead to local information disclosure. This issue occurs when an arithmetic operation results in a value that exceeds the storage capacity of the integer type, potentially causing the system to leak sensitive data. Exploitation requires the attacker to have already obtained System privileges, and no user interaction is necessary.
Recommendations Apply patch ALPS11004274 to the affected system.

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-20489

Affected Products

Mediatek Display