CVE-2026-20456
בינונית 5.5
תיאור (מקור, אנגלית)
In wlan STA driver, there is a possible system crash due to a missing bounds check. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00480851; Issue ID: MSV-6338.
מדדים
- CVSS 3.1
-
5.5 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-7/8/2026
- CWE
- CWE-787
מוצרים מושפעים
mediatek: mt7902 firmware; mediatek: mt7902; mediatek: mt7920 firmware; mediatek: mt7920; mediatek: mt7921 firmware; mediatek: mt7921; mediatek: mt7922 firmware; mediatek: mt7922; mediatek: mt7925 firmware; mediatek: mt7925; mediatek: mt7927 firmware; mediatek: mt7927
קישורים
- https://corp.mediatek.com/product-security-bulletin/June-2026 Vendor Advisory