Impact
A missing bounds check in the display path of MediaTek chipsets allows a buffer under‑read, giving a local attacker with System privilege the ability to read memory contents that are not intended for disclosure. This vulnerability, categorized as CWE‑125, can expose secrets, configuration data or proprietary code without any user interaction. The mere presence of the error leads directly to local information disclosure.
Affected Systems
MediaTek chipsets shipped prior to the vendor patch ALPS11004276 (Issue ID MSV‑7757) are affected. The August 2026 product security bulletin lists the disclosure but does not specify individual firmware versions. All devices that have not applied the patch are susceptible.
Risk and Exploitability
The CVSS score of 4.4 is provided; EPSS score is < 1%; the flaw is not listed in CISA’s KEV catalog. Because the exploitation requires only System privilege and no additional user interaction, an attacker who has already escalated locally can trigger the under‑read by invoking a display operation. The lack of prerequisite conditions elevates the risk for poorly protected embedded systems, making the vulnerability moderately to highly exploitable once privilege is obtained.
OpenCVE Enrichment