CVE-2026-20452

EUVD-2026-33541
In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00480138; Issue ID: MSV-6295.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
8 HIGH
ADJACENT_NETWORK
LOW
LOW
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 5%
Affected Products (NVD)
VendorProductVersion
mediatekmt6890_firmware
-
mediatekmt7615_firmware
-
mediatekmt7915_firmware
-
mediatekmt7916_firmware
-
mediatekmt7981_firmware
-
mediatekmt7986_firmware
-
mediatekmt7990_firmware
-
mediatekmt7992_firmware
-
mediatekmt7993_firmware
-
𝑥
= Vulnerable software versions