CVE-2026-20479
EUVD-2026-5206803.08.2026, 03:16
In Modem, there is a possible out of bounds read due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00741071; Issue ID: MSV-7620.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mediatek | mt2735_firmware | - |
| mediatek | mt6833_firmware | - |
| mediatek | mt6853_firmware | - |
| mediatek | mt6855_firmware | - |
| mediatek | mt6873_firmware | - |
| mediatek | mt6875_firmware | - |
| mediatek | mt6877_firmware | - |
| mediatek | mt6880_firmware | - |
| mediatek | mt6883_firmware | - |
| mediatek | mt6885_firmware | - |
| mediatek | mt6889_firmware | - |
| mediatek | mt6890_firmware | - |
| mediatek | mt6891_firmware | - |
| mediatek | mt6893_firmware | - |
| mediatek | mt8675_firmware | - |
| mediatek | mt8771_firmware | - |
| mediatek | mt8791_firmware | - |
| mediatek | mt8791t_firmware | - |
| mediatek | mt8797_firmware | - |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
Vulnerability Media Exposure