Description
In Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11006447; Issue ID: MSV-7871.
Published: 2026-07-01
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A heap buffer overflow exists in the MediaTek Telephony component, allowing an attacker to corrupt memory on the heap. This flaw is classified as CWE‑122 and can lead to local privilege escalation. If exploited successfully, an adversary who already operates with system privileges can leverage the overflow to achieve higher privileges or to compromise the security of the device.

Affected Systems

Devices that incorporate MediaTek chipset Telephony assemblies are affected. No exact firmware or operating system versions are specified in the advisory, so any release employing the Telephony subsystem could be vulnerable until the vendor patch is deployed.

Risk and Exploitability

The CVSS score of 6.7 indicates moderate severity, while the EPSS score is below 1% and the vulnerability is not listed in the CISA KEV catalog. Based on the local system-level access to trigger the overflow; no user interaction is required. If successful, the attacker can elevate privileges locally. The patch ID ALPS11006447 (Issue ID MSV-7871) addresses this issue.

Generated by OpenCVE AI on July 15, 2026 at 22:47 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the MediaTek vendor patch ALPS11006447 (Issue ID MSV-7871).
  • Restrict usage of Telephony APIs and enforce strict access control as a temporary containment measure.
  • Monitor system logs for signs of heap corruption or unauthorized privilege escalation attempts.

Generated by OpenCVE AI on July 15, 2026 at 22:47 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 15 Jul 2026 23:15:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Component Enables Local Privilege Escalation

Tue, 14 Jul 2026 11:30:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Leading to Local Privilege Escalation

Mon, 13 Jul 2026 04:45:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Leading to Local Privilege Escalation

Sun, 12 Jul 2026 02:15:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Overflow Enabling Local Privilege Escalation

Fri, 10 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Overflow Enabling Local Privilege Escalation

Fri, 10 Jul 2026 03:45:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Overflow Enables Local Privilege Escalation

Thu, 09 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Overflow Enables Local Privilege Escalation

Wed, 08 Jul 2026 14:15:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in Telephony Component Enables Local Privilege Escalation

Tue, 07 Jul 2026 09:45:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in Telephony Component Enables Local Privilege Escalation

Mon, 06 Jul 2026 12:00:00 +0000

Type Values Removed Values Added
Title Memory Corruption in MediaTek Telephony Leading to Local Privilege Escalation

Sun, 05 Jul 2026 22:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption in MediaTek Telephony Leading to Local Privilege Escalation

Sun, 05 Jul 2026 11:15:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Subsystem Enables Local Privilege Escalation

Sat, 04 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Subsystem Enables Local Privilege Escalation

Sat, 04 Jul 2026 07:15:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in Telephony Enables Local Privilege Escalation

Fri, 03 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in Telephony Enables Local Privilege Escalation

Fri, 03 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption in Telephony Enables Local Privilege Escalation

Thu, 02 Jul 2026 19:30:00 +0000

Type Values Removed Values Added
Title Memory Corruption in Telephony Enables Local Privilege Escalation

Thu, 02 Jul 2026 14:00:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Enables Local Privilege Escalation

Thu, 02 Jul 2026 08:30:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Enables Local Privilege Escalation

Thu, 02 Jul 2026 01:45:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Buffer Overflow Leading to Local Privilege Escalation

Wed, 01 Jul 2026 22:00:00 +0000

Type Values Removed Values Added
Title MediaTek Telephony Heap Buffer Overflow Leading to Local Privilege Escalation

Wed, 01 Jul 2026 17:30:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Subsystem Enables Local Privilege Escalation

Wed, 01 Jul 2026 13:45:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek, Inc.
Mediatek, Inc. mediatek Chipset
Vendors & Products Mediatek, Inc.
Mediatek, Inc. mediatek Chipset

Wed, 01 Jul 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 09:15:00 +0000

Type Values Removed Values Added
Title Heap Buffer Overflow in MediaTek Telephony Subsystem Enables Local Privilege Escalation

Wed, 01 Jul 2026 03:30:00 +0000

Type Values Removed Values Added
Description In Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11006447; Issue ID: MSV-7871.
Weaknesses CWE-122
References

Subscriptions

Mediatek, Inc. Mediatek Chipset
cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2026-07-02T03:55:17.558Z

Reserved: 2025-11-03T01:30:59.014Z

Link: CVE-2026-20462

cve-icon Vulnrichment

Updated: 2026-07-01T10:36:28.557Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-15T23:00:17Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow