Export limit exceeded: 403962 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (26 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-20541 | 2 Mediatek, Mediatek, Inc. | 167 Mt2716, Mt2716 Firmware, Mt2735 and 164 more | 2026-10-09 | 5.3 Medium |
| In Modem, there is a possible out of bounds read due to a missing permission check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01774038; Issue ID: MSV-8911. | ||||
| CVE-2026-20540 | 1 Mediatek | 167 Mediatek Chipset, Mt2716, Mt2716 Firmware and 164 more | 2026-10-09 | 5.3 Medium |
| In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01774038; Issue ID: MSV-8912. | ||||
| CVE-2026-20539 | 2 Mediatek, Mediatek, Inc. | 167 Mt2716, Mt2716 Firmware, Mt2735 and 164 more | 2026-10-09 | 5.3 Medium |
| In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01774038; Issue ID: MSV-8913. | ||||
| CVE-2026-20538 | 2 Mediatek, Mediatek, Inc. | 167 Mt2716, Mt2716 Firmware, Mt2735 and 164 more | 2026-10-09 | 5.3 Medium |
| In Modem, there is a possible out of bounds read due to a missing permission check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01774038; Issue ID: MSV-8914. | ||||
| CVE-2026-20528 | 2 Mediatek, Mediatek, Inc. | 21 Mt2735, Mt2735 Firmware, Mt2737 and 18 more | 2026-10-09 | 6.7 Medium |
| In ccci, there is a possible out of bounds write and read due to a missing bounds check. This could lead to local information disclosure, memory corruption, crashes, or privilege escalation if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS11428950 (Note: For MT6880, MT6890) / ALPS10563453 (Note: For MT6980D, MT6990, MT6986, MT6986D, MT6813, MT6988) / AUTO00858766 (Note: For MT2735, MT2737); Issue ID: MSV-9893. | ||||
| CVE-2026-20534 | 2 Mediatek, Mediatek, Inc. | 167 Mt2716, Mt2716 Firmware, Mt2735 and 164 more | 2026-10-09 | 5.3 Medium |
| In Modem, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01797547; Issue ID: MSV-9155. | ||||
| CVE-2026-20525 | 1 Mediatek | 45 Mediatek Chipset, Mt2716, Mt2716 Firmware and 42 more | 2026-10-08 | 5.3 Medium |
| In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01870473 / MOLY00814393; Issue ID: MSV-9041. | ||||
| CVE-2026-20526 | 2 Mediatek, Mediatek, Inc. | 111 Mt2716, Mt2716 Firmware, Mt2735 and 108 more | 2026-10-08 | 7.5 High |
| In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01898195; Issue ID: MSV-8906. | ||||
| CVE-2026-20527 | 2 Mediatek, Mediatek, Inc. | 111 Mt2716, Mt2716 Firmware, Mt2735 and 108 more | 2026-10-08 | 5.3 Medium |
| In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01864925 / MOLY01210562; Issue ID: MSV-8303. | ||||
| CVE-2026-20519 | 2 Mediatek, Mediatek, Inc. | 115 Mt2716, Mt2716 Firmware, Mt2735 and 112 more | 2026-10-08 | 7.5 High |
| In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01778993; Issue ID: MSV-8898. | ||||
| CVE-2026-20520 | 1 Mediatek | 115 Mediatek Chipset, Mt2716, Mt2716 Firmware and 112 more | 2026-10-08 | 7.5 High |
| In Modem, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01778988; Issue ID: MSV-8897. | ||||
| CVE-2026-20543 | 2 Mediatek, Mediatek, Inc. | 167 Mt2716, Mt2716 Firmware, Mt2735 and 164 more | 2026-10-08 | 5.5 Medium |
| In Modem, there is a possible information disclosure due to a logic error. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01645293; Issue ID: MSV-6761. | ||||
| CVE-2026-20503 | 2 Mediatek, Mediatek, Inc. | 115 Mt2716, Mt2716 Firmware, Mt2735 and 112 more | 2026-09-09 | 5.3 Medium |
| In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01371002; Issue ID: MSV-9020. | ||||
| CVE-2026-20500 | 1 Mediatek | 45 Mediatek Chipset, Mt2716, Mt2716 Firmware and 42 more | 2026-09-09 | 5.5 Medium |
| In Modem, there is a possible system crash due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01810811; Issue ID: MSV-9232. | ||||
| CVE-2026-20478 | 2 Mediatek, Mediatek, Inc. | 13 Mt2735, Mt2735 Firmware, Mt2737 and 10 more | 2026-08-20 | 5.5 Medium |
| In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981454 (Note: For MT6880, MT6890, MT6988, MT6990) / AUTO00851293 (Note: For MT2735, MT2737); Issue ID: MSV-7638. | ||||
| CVE-2026-20476 | 2 Mediatek, Mediatek, Inc. | 7 Mt6813, Mt6813 Firmware, Mt6986 and 4 more | 2026-08-19 | 5.5 Medium |
| In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981532; Issue ID: MSV-7660. | ||||
| CVE-2026-20480 | 2 Mediatek, Mediatek, Inc. | 15 Mt2735, Mt2735 Firmware, Mt2737 and 12 more | 2026-08-19 | 5.5 Medium |
| In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10960023 (Note: For MT6880, MT6890, MT6980D, MT6988, MT6990) / AUTO00851189 (Note: For MT2735, MT3737); Issue ID: MSV-7586. | ||||
| CVE-2026-20484 | 2 Mediatek, Mediatek, Inc. | 79 Mt6739, Mt6739 Firmware, Mt6761 and 76 more | 2026-08-19 | 4.4 Medium |
| In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11053160; Issue ID: MSV-8004. | ||||
| CVE-2026-20494 | 1 Mediatek | 7 Mediatek Chipset, Mt6890, Mt6890 Firmware and 4 more | 2026-08-19 | 5.5 Medium |
| In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10960006 / BORA00155314, BORA00155001, BORA00154907; Issue ID: MSV-7570. | ||||
| CVE-2026-20493 | 2 Mediatek, Mediatek, Inc. | 7 Mt6890, Mt6890 Firmware, Mt6988 and 4 more | 2026-08-19 | 4.4 Medium |
| In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: BORA00154903; Issue ID: MSV-7575. | ||||