PT-2026-67176 · Mediatek · Mediatek Display
CVE-2026-20489
·
Published
2026-08-03
·
Updated
2026-08-03
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
MediaTek Display (affected versions not specified)
Description
An integer overflow in the display component can lead to local information disclosure. This issue occurs when an arithmetic operation results in a value that exceeds the storage capacity of the integer type, potentially causing the system to leak sensitive data. Exploitation requires the attacker to have already obtained System privileges, and no user interaction is necessary.
Recommendations
Apply patch ALPS11004274 to the affected system.
Fix
Out of bounds Read
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mediatek Display