{"schema_version":1,"title":"MediaTek MT6889 vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 10 vulnerabilities in MediaTek MT6889: 0 in the last 7 days and 9 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-20504, was published on 7 September 2026.","url":"https://junglewise.ai/threats/technologies/mt6889","json_url":"https://junglewise.ai/threats/technologies/mt6889.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/technologies/mt6889","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"technology","counts":{"high":4,"all_time":10,"critical":0,"exploited":0,"last_7_days":0,"last_30_days":4,"last_90_days":9,"last_365_days":10},"latest":[{"cve":"CVE-2026-20504","cvss":5.3,"epss":0.0019,"slug":"cve-2026-20504-mediatek-modem-denial-of-service-due-to-missing-bounds-check","title":"MediaTek Modem denial of service due to missing bounds check","severity":"medium","exploited":false,"published_at":"2026-09-07T02:17:19.143+00:00","url":"https://junglewise.ai/threats/cve-2026-20504-mediatek-modem-denial-of-service-due-to-missing-bounds-check"},{"cve":"CVE-2026-20503","cvss":5.3,"epss":0.0019,"slug":"cve-2026-20503-mediatek-modem-system-crash-due-to-missing-bounds-check","title":"MediaTek Modem system crash due to missing bounds check","severity":"medium","exploited":false,"published_at":"2026-09-07T02:17:19.03+00:00","url":"https://junglewise.ai/threats/cve-2026-20503-mediatek-modem-system-crash-due-to-missing-bounds-check"},{"cve":"CVE-2026-20502","cvss":8.4,"epss":0.0013,"slug":"cve-2026-20502-mediatek-vdec-out-of-bounds-write","title":"MediaTek vdec out of bounds write","severity":"high","exploited":false,"published_at":"2026-09-07T02:17:18.917+00:00","url":"https://junglewise.ai/threats/cve-2026-20502-mediatek-vdec-out-of-bounds-write"},{"cve":"CVE-2026-20501","cvss":8.4,"epss":0.0013,"slug":"cve-2026-20501-mediatek-vdec-heap-buffer-overflow-privilege-escalation","title":"MediaTek vdec heap buffer overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-07T02:17:18.8+00:00","url":"https://junglewise.ai/threats/cve-2026-20501-mediatek-vdec-heap-buffer-overflow-privilege-escalation"},{"cve":"CVE-2026-20484","cvss":4.4,"epss":0.0016,"slug":"cve-2026-20484-mediatek-tfa-information-disclosure-due-to-missing-permission","title":"MediaTek TFA information disclosure due to missing permission check","severity":"medium","exploited":false,"published_at":"2026-08-03T03:16:43.54+00:00","url":"https://junglewise.ai/threats/cve-2026-20484-mediatek-tfa-information-disclosure-due-to-missing-permission"},{"cve":"CVE-2026-20483","cvss":7.7,"epss":0.0017,"slug":"cve-2026-20483-mediatek-telephony-permission-check-bypass","title":"MediaTek Telephony permission check bypass","severity":"high","exploited":false,"published_at":"2026-08-03T03:16:43.43+00:00","url":"https://junglewise.ai/threats/cve-2026-20483-mediatek-telephony-permission-check-bypass"},{"cve":"CVE-2026-20479","cvss":7.5,"epss":0.0071,"slug":"cve-2026-20479-mediatek-modem-out-of-bounds-read-due-to-missing-bounds-check","title":"MediaTek Modem out-of-bounds read due to missing bounds check","severity":"high","exploited":false,"published_at":"2026-08-03T03:16:42.98+00:00","url":"https://junglewise.ai/threats/cve-2026-20479-mediatek-modem-out-of-bounds-read-due-to-missing-bounds-check"},{"cve":"CVE-2026-20462","slug":"cve-2026-20462-mediatek-chipset-heap-buffer-overflow-in-telephony","title":"MediaTek Chipset heap buffer overflow in Telephony","severity":"info","exploited":false,"published_at":"2026-07-01T04:17:15.253+00:00","url":"https://junglewise.ai/threats/cve-2026-20462-mediatek-chipset-heap-buffer-overflow-in-telephony"},{"cve":"CVE-2026-20457","slug":"cve-2026-20457-mediatek-modem-improper-input-validation-in-multiple-chipsets","title":"MediaTek Modem improper input validation in multiple chipsets","severity":"info","exploited":false,"published_at":"2026-07-01T04:17:13.1+00:00","url":"https://junglewise.ai/threats/cve-2026-20457-mediatek-modem-improper-input-validation-in-multiple-chipsets"},{"cve":"CVE-2025-20755","cvss":5.3,"epss":0.0037,"slug":"cve-2025-20755-in-modem-there-is-a-possible-application-crash-due-to-improper","title":"In Modem, there is a possible application crash due to improper input validation. This could lead to remote denial of service, if a UE has c","severity":"medium","exploited":false,"published_at":"2025-12-02T03:16:16.763+00:00","url":"https://junglewise.ai/threats/cve-2025-20755-in-modem-there-is-a-possible-application-crash-due-to-improper"}],"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":3},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":4},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":0}],"related":[{"name":"MediaTek MT6993","slug":"mt6993","vulnerabilities":17,"url":"https://junglewise.ai/threats/technologies/mt6993"},{"name":"MediaTek MT6991","slug":"mt6991","vulnerabilities":16,"url":"https://junglewise.ai/threats/technologies/mt6991"},{"name":"MediaTek MT8678","slug":"mt8678","vulnerabilities":15,"url":"https://junglewise.ai/threats/technologies/mt8678"},{"name":"MediaTek MT6988","slug":"mt6988","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/mt6988"},{"name":"MediaTek Mt6993 Firmware","slug":"mt6993-firmware","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/mt6993-firmware"},{"name":"MediaTek MT8676","slug":"mt8676","vulnerabilities":14,"url":"https://junglewise.ai/threats/technologies/mt8676"},{"name":"MediaTek Mt6991 Firmware","slug":"mt6991-firmware","vulnerabilities":13,"url":"https://junglewise.ai/threats/technologies/mt6991-firmware"},{"name":"MediaTek MT8668","slug":"mt8668","vulnerabilities":13,"url":"https://junglewise.ai/threats/technologies/mt8668"},{"name":"MediaTek MT6890","slug":"mt6890","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/mt6890"},{"name":"MediaTek Mt8678 Firmware","slug":"mt8678-firmware","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/mt8678-firmware"},{"name":"MediaTek MT8781","slug":"mt8781","vulnerabilities":12,"url":"https://junglewise.ai/threats/technologies/mt8781"},{"name":"MediaTek Mt6988 Firmware","slug":"mt6988-firmware","vulnerabilities":11,"url":"https://junglewise.ai/threats/technologies/mt6988-firmware"}],"technology":{"hub":true,"name":"MediaTek MT6889","slug":"mt6889","vendor":{"name":"MediaTek","slug":"mediatek","url":"https://junglewise.ai/threats/vendors/mediatek"},"aliases":[],"category":"chipset","homepage":"https://www.mediatek.com/","description":"A system-on-a-chip designed for mobile devices.","url":"https://junglewise.ai/threats/technologies/mt6889"},"most_severe":[{"cve":"CVE-2026-20502","cvss":8.4,"epss":0.0013,"slug":"cve-2026-20502-mediatek-vdec-out-of-bounds-write","title":"MediaTek vdec out of bounds write","severity":"high","exploited":false,"published_at":"2026-09-07T02:17:18.917+00:00","url":"https://junglewise.ai/threats/cve-2026-20502-mediatek-vdec-out-of-bounds-write"},{"cve":"CVE-2026-20501","cvss":8.4,"epss":0.0013,"slug":"cve-2026-20501-mediatek-vdec-heap-buffer-overflow-privilege-escalation","title":"MediaTek vdec heap buffer overflow privilege escalation","severity":"high","exploited":false,"published_at":"2026-09-07T02:17:18.8+00:00","url":"https://junglewise.ai/threats/cve-2026-20501-mediatek-vdec-heap-buffer-overflow-privilege-escalation"},{"cve":"CVE-2026-20483","cvss":7.7,"epss":0.0017,"slug":"cve-2026-20483-mediatek-telephony-permission-check-bypass","title":"MediaTek Telephony permission check bypass","severity":"high","exploited":false,"published_at":"2026-08-03T03:16:43.43+00:00","url":"https://junglewise.ai/threats/cve-2026-20483-mediatek-telephony-permission-check-bypass"},{"cve":"CVE-2026-20479","cvss":7.5,"epss":0.0071,"slug":"cve-2026-20479-mediatek-modem-out-of-bounds-read-due-to-missing-bounds-check","title":"MediaTek Modem out-of-bounds read due to missing bounds check","severity":"high","exploited":false,"published_at":"2026-08-03T03:16:42.98+00:00","url":"https://junglewise.ai/threats/cve-2026-20479-mediatek-modem-out-of-bounds-read-due-to-missing-bounds-check"},{"cve":"CVE-2025-20755","cvss":5.3,"epss":0.0037,"slug":"cve-2025-20755-in-modem-there-is-a-possible-application-crash-due-to-improper","title":"In Modem, there is a possible application crash due to improper input validation. This could lead to remote denial of service, if a UE has c","severity":"medium","exploited":false,"published_at":"2025-12-02T03:16:16.763+00:00","url":"https://junglewise.ai/threats/cve-2025-20755-in-modem-there-is-a-possible-application-crash-due-to-improper"},{"cve":"CVE-2026-20504","cvss":5.3,"epss":0.0019,"slug":"cve-2026-20504-mediatek-modem-denial-of-service-due-to-missing-bounds-check","title":"MediaTek Modem denial of service due to missing bounds check","severity":"medium","exploited":false,"published_at":"2026-09-07T02:17:19.143+00:00","url":"https://junglewise.ai/threats/cve-2026-20504-mediatek-modem-denial-of-service-due-to-missing-bounds-check"},{"cve":"CVE-2026-20503","cvss":5.3,"epss":0.0019,"slug":"cve-2026-20503-mediatek-modem-system-crash-due-to-missing-bounds-check","title":"MediaTek Modem system crash due to missing bounds check","severity":"medium","exploited":false,"published_at":"2026-09-07T02:17:19.03+00:00","url":"https://junglewise.ai/threats/cve-2026-20503-mediatek-modem-system-crash-due-to-missing-bounds-check"},{"cve":"CVE-2026-20484","cvss":4.4,"epss":0.0016,"slug":"cve-2026-20484-mediatek-tfa-information-disclosure-due-to-missing-permission","title":"MediaTek TFA information disclosure due to missing permission check","severity":"medium","exploited":false,"published_at":"2026-08-03T03:16:43.54+00:00","url":"https://junglewise.ai/threats/cve-2026-20484-mediatek-tfa-information-disclosure-due-to-missing-permission"},{"cve":"CVE-2026-20462","slug":"cve-2026-20462-mediatek-chipset-heap-buffer-overflow-in-telephony","title":"MediaTek Chipset heap buffer overflow in Telephony","severity":"info","exploited":false,"published_at":"2026-07-01T04:17:15.253+00:00","url":"https://junglewise.ai/threats/cve-2026-20462-mediatek-chipset-heap-buffer-overflow-in-telephony"},{"cve":"CVE-2026-20457","slug":"cve-2026-20457-mediatek-modem-improper-input-validation-in-multiple-chipsets","title":"MediaTek Modem improper input validation in multiple chipsets","severity":"info","exploited":false,"published_at":"2026-07-01T04:17:13.1+00:00","url":"https://junglewise.ai/threats/cve-2026-20457-mediatek-modem-improper-input-validation-in-multiple-chipsets"}],"generated_at":"2026-09-26T09:11:00.170868+00:00"}