Description
In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981532; Issue ID: MSV-7660.
Published: 2026-08-03
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A missing bounds check in the ccci component of MediaTek chipsets allows a local user to trigger an out‑of‑bounds read, causing a crash or corruption of the process that the user is running. This flaw is a classic example of CWE‑787, where an unchecked array or pointer accesses memory beyond its intended bounds. While it does not grant code execution or elevate privileges, the resulting denial of service can disrupt the stability of the victim device.

Affected Systems

All devices that incorporate MediaTek chipsets with the vulnerable ccci component are affected. The vulnerability description does not specify firmware or operating system versions, so any current or future releases lacking the ALPS10981532 patch should be treated as at risk until remediation is applied.

Risk and Exploitability

Exploitation requires local user privileges and does not need additional user interaction beyond the fact that the attacker uses a legitimate application or process. The EPSS score of below 1% indicates a low probability of widespread exploitation, and the vulnerability is not listed in CISA’s KEV catalog. The CVSS score of 5.5 places it in the moderate severity range, underscoring that while the threat is limited in scope, it can still impact user experience and system availability if left unpatched.

Generated by OpenCVE AI on August 4, 2026 at 21:50 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the vendor patch identified by ALPS10981532 to correct the bounds check in ccci.
  • If patch deployment is delayed, isolate the affected device from untrusted applications or disable the ccci component if possible to prevent accidental fault triggers.
  • Monitor system logs for repeated memory access errors or unexpected crashes that might indicate an attempt to exploit the out‑of‑bounds read.
  • Verify that no legacy or legacy‑mode drivers continue to reference the vulnerable ccci interface and replace them with updated equivalents.

Generated by OpenCVE AI on August 4, 2026 at 21:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 19 Aug 2026 17:45:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek
Mediatek mt6813
Mediatek mt6813 Firmware
Mediatek mt6986
Mediatek mt6986 Firmware
Mediatek mt6988
Mediatek mt6988 Firmware
CPEs cpe:2.3:h:mediatek:mt6813:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6986:-:*:*:*:*:*:*:*
cpe:2.3:h:mediatek:mt6988:-:*:*:*:*:*:*:*
cpe:2.3:o:mediatek:mt6813_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:mediatek:mt6986_firmware:-:*:*:*:*:*:*:*
cpe:2.3:o:mediatek:mt6988_firmware:-:*:*:*:*:*:*:*
Vendors & Products Mediatek
Mediatek mt6813
Mediatek mt6813 Firmware
Mediatek mt6986
Mediatek mt6986 Firmware
Mediatek mt6988
Mediatek mt6988 Firmware

Tue, 04 Aug 2026 22:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read in ccci Leading to Local Denial of Service

Mon, 03 Aug 2026 20:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 03 Aug 2026 09:15:00 +0000

Type Values Removed Values Added
Title Out‑of‑Bounds Read in ccci Leading to Local Denial of Service

Mon, 03 Aug 2026 04:30:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek, Inc.
Mediatek, Inc. mediatek Chipset
Vendors & Products Mediatek, Inc.
Mediatek, Inc. mediatek Chipset

Mon, 03 Aug 2026 02:45:00 +0000

Type Values Removed Values Added
Description In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981532; Issue ID: MSV-7660.
Weaknesses CWE-787
References

Subscriptions

Mediatek Mt6813 Mt6813 Firmware Mt6986 Mt6986 Firmware Mt6988 Mt6988 Firmware
Mediatek, Inc. Mediatek Chipset
cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2026-08-03T19:07:29.288Z

Reserved: 2025-11-03T01:30:59.016Z

Link: CVE-2026-20476

cve-icon Vulnrichment

Updated: 2026-08-03T19:07:24.162Z

cve-icon NVD

Status : Analyzed

Published: 2026-08-03T03:16:42.637

Modified: 2026-08-19T17:38:11.497

Link: CVE-2026-20476

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T22:00:07Z

Weaknesses