Mediatek Inc Mediatek Chipset vulnerabilities
91 known vulnerabilities affecting mediatek_inc/mediatek_chipset.
Total CVEs
91
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH25MEDIUM64
Vulnerabilities
Page 3 of 5
CVE-2025-20806P4MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20806 [MEDIUM] CWE-416 CVE-2025-20806: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala
In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114835; Issue ID: MSV-4479.
nvd
CVE-2025-20802P4MEDIUMCVSS 6.7vMT6991vMT8196+4 more2026-01-06
CVE-2025-20802 [MEDIUM] CWE-416 CVE-2025-20802: In geniezone, there is a possible memory corruption due to use after free. This could lead to local
In geniezone, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10238968; Issue ID: MSV-4914.
nvd
CVE-2025-20804P4MEDIUMCVSS 6.7vMT6899vMT69912026-01-06
CVE-2025-20804 [MEDIUM] CWE-416 CVE-2025-20804: In dpe, there is a possible memory corruption due to use after free. This could lead to local escala
In dpe, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10198951; Issue ID: MSV-4503.
nvd
CVE-2026-20404P4MEDIUMCVSS 6.5vMT2735vMT2737+50 more2026-02-02
CVE-2026-20404 [MEDIUM] CWE-787 CVE-2026-20404: In Modem, there is a possible system crash due to improper input validation. This could lead to remo
In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01689248; Issue ID: MSV-4837.
nvd
CVE-2026-20450P4MEDIUMCVSS 6.5vMT2735vMT2737+49 more2026-05-04
CVE-2026-20450 [MEDIUM] CWE-617 CVE-2026-20450: In Modem, there is a possible system crash due to incorrect error handling. This could lead to remot
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01753620; Issue ID: MSV-6100.
nvd
CVE-2026-20451P4MEDIUMCVSS 6.7vMT2718vMT6899+30 more2026-05-04
CVE-2026-20451 [MEDIUM] CWE-843 CVE-2026-20451: In slbc, there is a possible out of bounds write due to type confusion. This could lead to local esc
In slbc, there is a possible out of bounds write due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10828685; Issue ID: MSV-6504.
nvd
CVE-2026-20453P4MEDIUMCVSS 6.7vMT6739vMT6761+34 more2026-06-01
CVE-2026-20453 [MEDIUM] CWE-787 CVE-2026-20453: In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead
In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10886526; Issue ID: MSV-6791.
nvd
CVE-2025-20803P4MEDIUMCVSS 6.7vMT6899vMT6991+1 more2026-01-06
CVE-2025-20803 [MEDIUM] CWE-190 CVE-2025-20803: In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local e
In dpe, there is a possible memory corruption due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is needed for exploitation. Patch ID: ALPS10199779; Issue ID: MSV-4504.
nvd
CVE-2026-20425P4MEDIUMCVSS 6.7vMT6739vMT6761+27 more2026-03-02
CVE-2026-20425 [MEDIUM] CWE-787 CVE-2026-20425: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5539.
nvd
CVE-2026-20427P4MEDIUMCVSS 6.7vMT6739vMT6761+27 more2026-03-02
CVE-2026-20427 [MEDIUM] CWE-787 CVE-2026-20427: In display, there is a possible escalation of privilege due to a missing bounds check. This could le
In display, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5537.
nvd
CVE-2026-20426P4MEDIUMCVSS 6.7vMT6739vMT6761+27 more2026-03-02
CVE-2026-20426 [MEDIUM] CWE-787 CVE-2026-20426: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5538.
nvd
CVE-2026-20428P4MEDIUMCVSS 6.7vMT6739vMT6761+27 more2026-03-02
CVE-2026-20428 [MEDIUM] CWE-787 CVE-2026-20428: In display, there is a possible out of bounds write due to a missing bounds check. This could lead t
In display, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10320471; Issue ID: MSV-5536.
nvd
CVE-2025-20784P4MEDIUMCVSS 6.7vMT6739vMT6761+43 more2026-01-06
CVE-2025-20784 [MEDIUM] CWE-457 CVE-2025-20784: In display, there is a possible memory corruption due to uninitialized data. This could lead to loca
In display, there is a possible memory corruption due to uninitialized data. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10182882; Issue ID: MSV-4683.
nvd
CVE-2026-20431P4MEDIUMCVSS 6.5vMT6813vMT6815+17 more2026-04-07
CVE-2026-20431 [MEDIUM] CWE-770 CVE-2026-20431: In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of
In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01106496; Issue ID: MSV-4467.
nvd
CVE-2025-20762P4MEDIUMCVSS 6.5vMT6835vMT6835T+13 more2026-01-06
CVE-2025-20762 [MEDIUM] CWE-617 CVE-2025-20762: In Modem, there is a possible system crash due to incorrect error handling. This could lead to remot
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01685181; Issue ID: MSV-4760.
nvd
CVE-2025-20793P4MEDIUMCVSS 6.5vMT2735vMT2737+47 more2026-01-06
CVE-2025-20793 [MEDIUM] CWE-476 CVE-2025-20793: In Modem, there is a possible system crash due to incorrect error handling. This could lead to remot
In Modem, there is a possible system crash due to incorrect error handling. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01430930; Issue ID: MSV-4836.
nvd
CVE-2026-20449P4MEDIUMCVSS 6.5vMT2735vMT2737+66 more2026-05-04
CVE-2026-20449 [MEDIUM] CWE-120 CVE-2026-20449: In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote
In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01760138; Issue ID: MSV-6148.
nvd
CVE-2026-20414P4MEDIUMCVSS 6.7vMT6897vMT6989+6 more2026-02-02
CVE-2026-20414 [MEDIUM] CWE-416 CVE-2026-20414: In imgsys, there is a possible escalation of privilege due to use after free. This could lead to loc
In imgsys, there is a possible escalation of privilege due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10362999; Issue ID: MSV-5625.
nvd
CVE-2026-20410P4MEDIUMCVSS 6.7vMT6897vMT6989+3 more2026-02-02
CVE-2026-20410 [MEDIUM] CWE-787 CVE-2026-20410: In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to
In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10362552; Issue ID: MSV-5760.
nvd
CVE-2026-20413P4MEDIUMCVSS 6.7vMT6899vMT6991+2 more2026-02-02
CVE-2026-20413 [MEDIUM] CWE-1285 CVE-2026-20413: In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to
In imgsys, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10362725; Issue ID: MSV-5694.
nvd