Vulnerabilities (CVE)

Filtered by vendor Mediatek Subscribe
Filtered by product Mt6988
Total 14 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-20503 1 Mediatek 114 Mt2716, Mt2716 Firmware, Mt2735 and 111 more 2026-09-09 N/A 5.3 MEDIUM
In Modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01371002; Issue ID: MSV-9020.
CVE-2026-20500 1 Mediatek 44 Mt2716, Mt2716 Firmware, Mt6835 and 41 more 2026-09-09 N/A 5.5 MEDIUM
In Modem, there is a possible system crash due to improper input validation. This could lead to local denial of service with User execution privileges needed. User interaction is needed for exploitation. Patch ID: MOLY01810811; Issue ID: MSV-9232.
CVE-2026-20478 1 Mediatek 12 Mt2735, Mt2735 Firmware, Mt2737 and 9 more 2026-08-20 N/A 5.5 MEDIUM
In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981454 (Note: For MT6880, MT6890, MT6988, MT6990) / AUTO00851293 (Note: For MT2735, MT2737); Issue ID: MSV-7638.
CVE-2026-20476 1 Mediatek 6 Mt6813, Mt6813 Firmware, Mt6986 and 3 more 2026-08-19 N/A 5.5 MEDIUM
In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981532; Issue ID: MSV-7660.
CVE-2026-20480 1 Mediatek 14 Mt2735, Mt2735 Firmware, Mt2737 and 11 more 2026-08-19 N/A 5.5 MEDIUM
In Audio HAL, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10960023 (Note: For MT6880, MT6890, MT6980D, MT6988, MT6990) / AUTO00851189 (Note: For MT2735, MT3737); Issue ID: MSV-7586.
CVE-2026-20484 1 Mediatek 78 Mt6739, Mt6739 Firmware, Mt6761 and 75 more 2026-08-19 N/A 4.4 MEDIUM
In TFA, there is a possible information disclosure due to a missing permission check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11053160; Issue ID: MSV-8004.
CVE-2026-20494 1 Mediatek 6 Mt6890, Mt6890 Firmware, Mt6988 and 3 more 2026-08-19 N/A 5.5 MEDIUM
In wifi, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10960006 / BORA00155314, BORA00155001, BORA00154907; Issue ID: MSV-7570.
CVE-2026-20493 1 Mediatek 6 Mt6890, Mt6890 Firmware, Mt6988 and 3 more 2026-08-19 N/A 4.4 MEDIUM
In wifi, there is a possible out of bounds write due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: BORA00154903; Issue ID: MSV-7575.
CVE-2026-20492 1 Mediatek 12 Mt2735, Mt2735 Firmware, Mt2737 and 9 more 2026-08-19 N/A 5.5 MEDIUM
In Audio HAL, there is a possible system becoming unresponsive due to a race condition. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10960026 (Note: For MT6880, MT6890, MT6990, MT6988) / AUTO00851250 (Note: For MT2735, MT2737); Issue ID: MSV-7583.
CVE-2026-20491 1 Mediatek 10 Mt2735, Mt2735 Firmware, Mt2737 and 7 more 2026-08-19 N/A 5.5 MEDIUM
In med, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS10981478 (Note: For MT6890, MT6990, MT6988) / AUTO00851173 (Note: For MT2735, MT2737); Issue ID: MSV-7652.
CVE-2026-20490 1 Mediatek 10 Mt6813, Mt6813 Firmware, Mt6982vb and 7 more 2026-08-19 N/A 4.4 MEDIUM
In ccci, there is a possible out of bounds read due to a missing bounds check. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10981501; Issue ID: MSV-7669.
CVE-2026-20449 1 Mediatek 136 Mt2735, Mt2735 Firmware, Mt2737 and 133 more 2026-06-17 N/A 6.5 MEDIUM
In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01760138; Issue ID: MSV-6148.
CVE-2024-20151 1 Mediatek 33 Mt2737, Mt2739, Mt6789 and 30 more 2026-06-17 N/A 6.7 MEDIUM
In Modem, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: MOLY01399339; Issue ID: MSV-1928.
CVE-2024-20131 1 Mediatek 33 Mt2737, Mt2739, Mt6789 and 30 more 2026-06-17 N/A 6.7 MEDIUM
In Modem, there is a possible escalation of privilege due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01395886; Issue ID: MSV-1873.