Executive brief
MediaTek chipsets include display processing components that render graphics on smartphones, tablets, and other devices. A memory corruption vulnerability in the display driver could allow an attacker who has already gained system-level access to escalate privileges or crash the device, affecting the reliability and security of the affected systems.
Technical details
This is a use-after-free memory corruption vulnerability in the display subcomponent of MediaTek chipsets. The root cause involves improper memory management leading to access of freed memory regions. Exploitation requires that an attacker has already obtained System privilege, meaning local access to the device. No user interaction is required once System privilege is obtained. Successful exploitation can lead to local privilege escalation. A patch is available as indicated by Patch ID ALPS11019722.
Affected products
- MediaTek Dimensity
Timeline
- 2026-08-03: disclosed