Description
In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11262030; Issue ID: MSV-9196.
Published: 2026-09-07
Score: n/a
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

This vulnerability resides in the vdec component of MediaTek chipsets and results from a missing bounds check, permitting an out-of-bounds write. The flaw could let a local user elevate privileges without needing any additional execution privileges or user interaction. The impact is a compromise of device security at the system level, enabling the attacker to run code with higher privileges than originally granted.

Affected Systems

Vendors: MediaTek, Inc. Products: MediaTek chipsets. No specific affected version information is provided in the CVE data; all MediaTek chipset devices that include the vulnerable vdec implementation are potentially impacted.

Risk and Exploitability

The vulnerability allows local privilege escalation and can be triggered without user interaction. While no CVSS or EPSS score is available, the existence of an out-of-bounds write that promotes privilege elevation indicates a high severity scenario. The feature is exploitable by any user who can run code on the system and is not protected by additional access controls. Because it is a local issue, remote exploitation is not described, but once a user gains elevated privileges, they could achieve full device compromise. The CVE is not listed in CISA KEV, but the severity of the flaw warrants immediate attention.

Generated by OpenCVE AI on September 7, 2026 at 03:28 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the MediaTek firmware patch identified by ALPS11262030 to address the missing bounds check in vdec.
  • If an immediate patch cannot be applied, disable or restrict the usage of the vulnerable media decoding functionality until the patch is available.
  • Monitor system logs for anomalous memory write operations or crashes that may indicate exploitation attempts.
  • Once the vendor releases an updated firmware or hardware revision that removes the vulnerability, upgrade the device to the latest stable version.

Generated by OpenCVE AI on September 7, 2026 at 03:28 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 07 Sep 2026 03:45:00 +0000

Type Values Removed Values Added
Title MediaTek chipset vdec out-of-bounds write leading to local privilege escalation

Mon, 07 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
Description In vdec, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11262030; Issue ID: MSV-9196.
Weaknesses CWE-122
References

Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2026-09-07T01:57:16.345Z

Reserved: 2025-11-03T01:30:59.028Z

Link: CVE-2026-20502

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-07T02:17:18.917

Modified: 2026-09-07T02:17:18.917

Link: CVE-2026-20502

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T03:30:16Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow