Junglewise Threat Intelligence

CVE-2026-20489: MediaTek display integer overflow information disclosure

CVE-2026-20489 · Severity: medium · CVSS 4.4 · Published 2026-08-03

Technologies: MediaTek Mt8786 Firmware, MediaTek MT8676, MediaTek Mt6993 Firmware, MediaTek Mt8367, MediaTek Mt8791t, MediaTek Mt8910 Firmware, MediaTek Mt6991, MediaTek Mt8188 Firmware, MediaTek MT6993, MediaTek Mt8367 Firmware, MediaTek Mt8676 Firmware, MediaTek Mt8791t Firmware, MediaTek Mt8799 Firmware, MediaTek Mt8126 Firmware, MediaTek Mt8766, MediaTek Mt8189 Firmware, MediaTek Mt8766 Firmware, MediaTek Mt8668, MediaTek Mt8126, MediaTek Mt8171, MediaTek Mt6991 Firmware, MediaTek Mt8910, MediaTek Mt8188, MediaTek Mt8171 Firmware, MediaTek Mt8781, MediaTek Mt8678 Firmware, MediaTek Mt8668 Firmware, MediaTek Mt8781 Firmware, MediaTek MT8678, MediaTek Mt8189, MediaTek Mt8768 Firmware, MediaTek Mt8786, MediaTek Mt8799, MediaTek Mt8768. Vendors: MediaTek.

Executive brief

MediaTek chipsets contain a display driver vulnerability that can leak sensitive system information to a local attacker who already has elevated system privileges. While exploitation requires existing administrative access, the integer overflow flaw could allow unauthorized memory access and data exposure, potentially compromising confidential device information.

Technical details

The vulnerability is an integer overflow flaw in the display subsystem of MediaTek chipsets that leads to information disclosure. The root cause lies in improper bounds checking during integer arithmetic operations in the display driver, allowing an attacker to read out-of-bounds memory. Exploitation requires the attacker to already possess system-level privileges (no user interaction needed), and can be achieved through local attack vectors only. A successful exploit allows reading of sensitive kernel or system memory that would normally be protected, potentially exposing cryptographic keys, credentials, or other confidential data. Patches are available via ALPS11004274.

Affected products

  • MediaTek Chipset Display Driver <UNKNOWN>

Timeline

  • 2026-08-03: disclosed
  • 2026-08-03: patched: Patch ID ALPS11004274 issued; Device OEMs notified at least 2 months prior

References

Related threats