Description
In Power HAL, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11165543; Issue ID: MSV-9012.
Published: 2026-09-07
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation
Action: Apply Patch
AI Analysis

Impact

This vulnerability exists in MediaTek's Power HAL and arises from a type‑confusion error that can be triggered by a malicious actor who already holds System privilege on the device. The flaw does not require user interaction; once exploited, the attacker can elevate privileges locally to gain higher level control over the system, potentially modifying firmware behavior or accessing sensitive data.

Affected Systems

MediaTek chipsets are affected. No specific firmware or hardware version information is provided in the advisory; all devices using the Power HAL should be evaluated for the presence of the flaw.

Risk and Exploitability

The EPSS score is not available and the vulnerability is not listed in CISA's KEV catalog, but the absence of an exploitation barrier and the capability to achieve privilege escalation locally indicate a high degree of risk for systems that could already be compromised to System level. The CVSS score is 6.7, so assessment relies on the severity derived from the description and known CWE‑843 type‑confusion weakness.

Generated by OpenCVE AI on September 7, 2026 at 14:01 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the MediaTek security patch ALPS11165543 to all affected devices immediately.
  • Restrict access to processes with System privilege to limit the opportunity for type‑confusion to be triggered.
  • Monitor and control power management modules that invoke the Power HAL to prevent unintended execution paths.
  • Keep device firmware up to date with future security releases to avoid re‑introduction of similar weaknesses.

Generated by OpenCVE AI on September 7, 2026 at 14:01 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 07 Sep 2026 14:30:00 +0000

Type Values Removed Values Added
Title Power HAL Type‑Confusion Privilege Escalation in MediaTek Chipsets

Mon, 07 Sep 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 6.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 07 Sep 2026 06:45:00 +0000

Type Values Removed Values Added
First Time appeared Mediatek, Inc.
Mediatek, Inc. mediatek Chipset
Vendors & Products Mediatek, Inc.
Mediatek, Inc. mediatek Chipset

Mon, 07 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
Description In Power HAL, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11165543; Issue ID: MSV-9012.
Weaknesses CWE-843
References

Subscriptions

Mediatek, Inc. Mediatek Chipset
cve-icon MITRE

Status: PUBLISHED

Assigner: MediaTek

Published:

Updated: 2026-09-08T03:55:24.329Z

Reserved: 2025-11-03T01:30:59.029Z

Link: CVE-2026-20508

cve-icon Vulnrichment

Updated: 2026-09-07T10:34:02.904Z

cve-icon NVD

Status : Deferred

Published: 2026-09-07T02:17:19.470

Modified: 2026-09-08T18:37:41.047

Link: CVE-2026-20508

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T14:15:16Z

Weaknesses
  • CWE-843

    Access of Resource Using Incompatible Type ('Type Confusion')