Mediatek Inc Mediatek Chipset vulnerabilities

74 known vulnerabilities affecting mediatek_inc/mediatek_chipset.

Total CVEs
74
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH22MEDIUM50

Vulnerabilities

Page 2 of 4
CVE-2026-20440MEDIUMCVSS 6.7vMT2718vMT6899+3 more2026-03-02
CVE-2026-20440 [MEDIUM] CWE-1285 CVE-2026-20440: In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10431968; Issue ID: MSV-5824.
cvelistv5nvd
CVE-2026-20429MEDIUMCVSS 4.4vMT6739vMT6761+27 more2026-03-02
CVE-2026-20429 [MEDIUM] CWE-125 CVE-2026-20429: In display, there is a possible out of bounds read due to a missing bounds check. This could lead to In display, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5535.
cvelistv5nvd
CVE-2026-20438MEDIUMCVSS 6.4vMT2718vMT6899+9 more2026-03-02
CVE-2026-20438 [MEDIUM] CWE-367 CVE-2026-20438: In MAE, there is a possible out of bounds write due to a race condition. This could lead to local es In MAE, there is a possible out of bounds write due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10431920; Issue ID: MSV-5835.
cvelistv5nvd
CVE-2026-20441MEDIUMCVSS 6.7vMT2718vMT6899+3 more2026-03-02
CVE-2026-20441 [MEDIUM] CWE-787 CVE-2026-20441: In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to lo In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10432500; Issue ID: MSV-5803.
cvelistv5nvd
CVE-2026-20442MEDIUMCVSS 4.4vMT6739vMT6761+44 more2026-03-02
CVE-2026-20442 [MEDIUM] CWE-416 CVE-2026-20442: In display, there is a possible system crash due to use after free. This could lead to local denial In display, there is a possible system crash due to use after free. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10436998; Issue ID: MSV-5723.
cvelistv5nvd
CVE-2026-20418CRITICALCVSS 9.8vMT7931vMT79332026-02-02
CVE-2026-20418 [CRITICAL] CWE-787 CVE-2026-20418: In Thread, there is a possible out of bounds write due to a missing bounds check. This could lead to In Thread, there is a possible out of bounds write due to a missing bounds check. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00465153; Issue ID: MSV-4927.
cvelistv5nvd
CVE-2026-20407CRITICALCVSS 9.3vMT7902vMT7920+4 more2026-02-02
CVE-2026-20407 [CRITICAL] CWE-787 CVE-2026-20407: In wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This In wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00464377; Issue ID: MSV-4905.
cvelistv5nvd
CVE-2026-20409HIGHCVSS 7.8vMT6897vMT69892026-02-02
CVE-2026-20409 [HIGH] CWE-787 CVE-2026-20409: In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10363246; Issue ID: MSV-5779.
cvelistv5nvd
CVE-2026-20408HIGHCVSS 8.8vMT6890vMT7615+4 more2026-02-02
CVE-2026-20408 [HIGH] CWE-122 CVE-2026-20408: In wlan, there is a possible out of bounds write due to a heap buffer overflow. This could lead to r In wlan, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00461651; Issue ID: MSV-4758.
cvelistv5nvd
CVE-2026-20412HIGHCVSS 7.8vMT6878vMT6879+22 more2026-02-02
CVE-2026-20412 [HIGH] CWE-787 CVE-2026-20412: In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead In cameraisp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10351676; Issue ID: MSV-5733.
cvelistv5nvd
CVE-2026-20401HIGHCVSS 7.5vMT2735vMT6833+17 more2026-02-02
CVE-2026-20401 [HIGH] CWE-617 CVE-2026-20401: In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote d In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01738310; Issue ID: MSV-5933.
cvelistv5nvd
CVE-2026-20411HIGHCVSS 7.8vMT6878vMT6879+22 more2026-02-02
CVE-2026-20411 [HIGH] CWE-416 CVE-2026-20411: In cameraisp, there is a possible escalation of privilege due to use after free. This could lead to In cameraisp, there is a possible escalation of privilege due to use after free. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10351676; Issue ID: MSV-5737.
cvelistv5nvd
CVE-2026-20403MEDIUMCVSS 6.5vMT2735vMT2737+40 more2026-02-02
CVE-2026-20403 [MEDIUM] CWE-787 CVE-2026-20403: In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01689254 (Note: For N15 and NR16) / MOLY01689259
cvelistv5nvd
CVE-2026-20417MEDIUMCVSS 5.3vMT6991vMT6993+1 more2026-02-02
CVE-2026-20417 [MEDIUM] CWE-787 CVE-2026-20417: In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to l In pcie, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10314946 / ALPS10340155; Issue ID: MSV-5154.
cvelistv5nvd
CVE-2026-20402MEDIUMCVSS 6.5vMT2735vMT6833+17 more2026-02-02
CVE-2026-20402 [MEDIUM] CWE-787 CVE-2026-20402: In Modem, there is a possible system crash due to improper input validation. This could lead to remo In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00693083; Issue ID: MSV-5928.
cvelistv5nvd
CVE-2026-20406MEDIUMCVSS 6.5vMT2735vMT2737+50 more2026-02-02
CVE-2026-20406 [MEDIUM] CWE-770 CVE-2026-20406: In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote d In Modem, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01726634; Issue ID: MSV-5728.
cvelistv5nvd
CVE-2026-20414MEDIUMCVSS 6.7vMT6897vMT6989+6 more2026-02-02
CVE-2026-20414 [MEDIUM] CWE-416 CVE-2026-20414: In imgsys, there is a possible escalation of privilege due to use after free. This could lead to loc In imgsys, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10362999; Issue ID: MSV-5625.
cvelistv5nvd
CVE-2026-20419MEDIUMCVSS 6.5vMT6890vMT6989TB+23 more2026-02-02
CVE-2026-20419 [MEDIUM] CWE-754 CVE-2026-20419: In wlan AP/STA firmware, there is a possible system becoming irresponsive due to an uncaught excepti In wlan AP/STA firmware, there is a possible system becoming irresponsive due to an uncaught exception. This could lead to remote (proximal/adjacent) denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00461663 / WCNCR00463309; Issue ID: MSV-4852.
cvelistv5nvd
CVE-2026-20421MEDIUMCVSS 6.5vMT2735vMT6833+13 more2026-02-02
CVE-2026-20421 [MEDIUM] CWE-125 CVE-2026-20421: In Modem, there is a possible system crash due to improper input validation. This could lead to remo In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01738293; Issue ID: MSV-5922.
cvelistv5nvd
CVE-2026-20415MEDIUMCVSS 5.5vMT6897vMT69892026-02-02
CVE-2026-20415 [MEDIUM] CWE-415 CVE-2026-20415: In imgsys, there is a possible memory corruption due to improper locking. This could lead to local d In imgsys, there is a possible memory corruption due to improper locking. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10363254; Issue ID: MSV-5617.
cvelistv5nvd