Impact
The vulnerability is a use‑after‑free in the MediaTek GPU driver that can cause a system crash and may disclose local information. It requires user execution privileges and user interaction to be triggered.
Affected Systems
MediaTek Inc. chipset GPU components. No specific firmware or kernel versions are listed in the advisory.
Risk and Exploitability
EPSS is not available and the vulnerability is not listed in CISA KEV. The CVSS score is 5.5. It is not publicly exploited at present. Exploitation requires local user privilege and user interaction, and the impact is limited to the local system without offering remote code execution.
OpenCVE Enrichment