Aggregator
CVE-2026-20445 | MediaTek MT8798 MDDP toctou
1 month 3 weeks ago
A vulnerability classified as problematic has been found in MediaTek MT6835, MT6855, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8188, MT8678, MT8755, MT8771, MT8797 and MT8798. The impacted element is an unknown function of the component MDDP. Performing a manipulation results in time-of-check time-of-use.
This vulnerability was named CVE-2026-20445. The attack needs to be approached locally. There is no available exploit.
Applying a patch is the recommended action to fix this issue.
vuldb.com
CVE-2026-20444 | MediaTek MT8883 Display out-of-bounds write
1 month 3 weeks ago
A vulnerability described as critical has been identified in MediaTek MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8186, MT8188, MT8196, MT8667, MT8673, MT8676, MT8678, MT8765, MT8766, MT8768, MT8771, MT8781, MT8791T, MT8792, MT8793, MT8795T, MT8796, MT8798, MT8873 and MT8883. The affected element is an unknown function of the component Display. Such manipulation leads to out-of-bounds write.
This vulnerability is uniquely identified as CVE-2026-20444. Local access is required to approach this attack. No exploit exists.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2026-20443 | MediaTek MT8883 Display use after free
1 month 3 weeks ago
A vulnerability marked as critical has been reported in MediaTek MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8186, MT8188, MT8196, MT8667, MT8673, MT8676, MT8678, MT8765, MT8766, MT8768, MT8771, MT8781, MT8791T, MT8792, MT8793, MT8795T, MT8796, MT8798, MT8873 and MT8883. Impacted is an unknown function of the component Display. This manipulation causes use after free.
This vulnerability is handled as CVE-2026-20443. It is possible to launch the attack on the local host. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
vuldb.com
CVE-2026-20439 | MediaTek MT2718/MT6899/MT6991/MT8678/MT8793 imgsys use after free
1 month 3 weeks ago
A vulnerability labeled as critical has been found in MediaTek MT2718, MT6899, MT6991, MT8678 and MT8793. This issue affects some unknown processing of the component imgsys. The manipulation results in use after free.
This vulnerability is known as CVE-2026-20439. Attacking locally is a requirement. No exploit is available.
A patch should be applied to remediate this issue.
vuldb.com
CVE-2026-20442 | MediaTek MT8883 Display use after free
1 month 3 weeks ago
A vulnerability identified as critical has been detected in MediaTek MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8186, MT8188, MT8196, MT8667, MT8673, MT8676, MT8678, MT8765, MT8766, MT8768, MT8771, MT8781, MT8791T, MT8792, MT8793, MT8795T, MT8796, MT8798, MT8873 and MT8883. This vulnerability affects unknown code of the component Display. The manipulation leads to use after free.
This vulnerability is traded as CVE-2026-20442. An attack has to be approached locally. There is no exploit available.
It is suggested to install a patch to address this issue.
vuldb.com
CVE-2026-20441 | MediaTek MT2718/MT6899/MT6991/MT8678/MT8793 MAE out-of-bounds write
1 month 3 weeks ago
A vulnerability categorized as critical has been discovered in MediaTek MT2718, MT6899, MT6991, MT8678 and MT8793. This affects an unknown part of the component MAE. Executing a manipulation can lead to out-of-bounds write.
This vulnerability appears as CVE-2026-20441. The attack requires local access. There is no available exploit.
Applying a patch is advised to resolve this issue.
vuldb.com
CVE-2026-20440 | MediaTek MT2718/MT6899/MT6991/MT8678/MT8793 MAE improper validation of specified index, position, or offset in input
1 month 3 weeks ago
A vulnerability was found in MediaTek MT2718, MT6899, MT6991, MT8678 and MT8793. It has been rated as critical. Affected by this issue is some unknown functionality of the component MAE. Performing a manipulation results in improper validation of specified index, position, or offset in input.
This vulnerability is reported as CVE-2026-20440. The attack requires a local approach. No exploit exists.
It is recommended to apply a patch to fix this issue.
vuldb.com
CVE-2026-20438 | MediaTek MT8793 MAE toctou
1 month 3 weeks ago
A vulnerability was found in MediaTek MT2718, MT6899, MT6991, MT8168, MT8169, MT8186, MT8188, MT8678, MT8695, MT8696 and MT8793. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component MAE. Such manipulation leads to time-of-check time-of-use.
This vulnerability is documented as CVE-2026-20438. The attack needs to be performed locally. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
vuldb.com
CVE-2026-20428 | MediaTek MT8793 Display out-of-bounds write
1 month 3 weeks ago
A vulnerability was found in MediaTek MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8196, MT8678 and MT8793. It has been classified as critical. Affected is an unknown function of the component Display. This manipulation causes out-of-bounds write.
This vulnerability is registered as CVE-2026-20428. The attack needs to be launched locally. No exploit is available.
Applying a patch is the recommended action to fix this issue.
vuldb.com
CVE-2026-20436 | MediaTek MT7902/MT7920/MT7921/MT7922/MT7925/MT7927/MT8696 WLAN STA Driver buffer overflow
1 month 3 weeks ago
A vulnerability was found in MediaTek MT7902, MT7920, MT7921, MT7922, MT7925, MT7927 and MT8696 and classified as critical. This impacts an unknown function of the component WLAN STA Driver. The manipulation results in buffer overflow.
This vulnerability is cataloged as CVE-2026-20436. The attack must be initiated from a local position. There is no exploit available.
It is advisable to implement a patch to correct this issue.
vuldb.com
CVE-2026-20437 | MediaTek MT2718/MT6899/MT6991/MT8678/MT8793 MAE use after free
1 month 3 weeks ago
A vulnerability has been found in MediaTek MT2718, MT6899, MT6991, MT8678 and MT8793 and classified as critical. This affects an unknown function of the component MAE. The manipulation leads to use after free.
This vulnerability is listed as CVE-2026-20437. The attack must be carried out locally. There is no available exploit.
To fix this issue, it is recommended to deploy a patch.
vuldb.com
CVE-2026-20427 | MediaTek MT8793 Display out-of-bounds write
1 month 3 weeks ago
A vulnerability, which was classified as critical, was found in MediaTek MT6739, MT6761, MT6765, MT6768, MT6781, MT6789, MT6833, MT6835, MT6853, MT6855, MT6877, MT6878, MT6879, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8196, MT8678 and MT8793. The impacted element is an unknown function of the component Display. Executing a manipulation can lead to out-of-bounds write.
This vulnerability is tracked as CVE-2026-20427. The attack is restricted to local execution. No exploit exists.
A patch should be applied to remediate this issue.
vuldb.com
Теперь точно не подсмотрят. Сообщения между iOS и Android отныне шифруются по умолчанию
1 month 3 weeks ago
IT-гиганты всё-таки смогли объединиться ради вашей приватности.
3D数字分身的奇幻舞台:火山引擎空间视频技术解密
1 month 3 weeks ago
CVE-2026-22982 | Linux Kernel up to 6.19-rc4 Ocelot Driver ocelot_vsc7514.c ocelot_set_aggr_pgids null pointer dereference (Nessus ID 296380 / WID-SEC-2026-0215)
1 month 3 weeks ago
A vulnerability marked as critical has been reported in Linux Kernel up to 6.19-rc4. The impacted element is the function ocelot_set_aggr_pgids of the file ocelot_vsc7514.c of the component Ocelot Driver. Performing a manipulation results in null pointer dereference.
This vulnerability is identified as CVE-2026-22982. The attack can only be performed from the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2026-22983 | Linux Kernel up to 6.18.5/6.19-rc3/6.19-rc4 msg_get_inq null pointer dereference (Nessus ID 296406 / WID-SEC-2026-0215)
1 month 3 weeks ago
A vulnerability described as critical has been identified in Linux Kernel up to 6.18.5/6.19-rc3/6.19-rc4. Affected by this vulnerability is the function msg_get_inq. The manipulation results in null pointer dereference.
This vulnerability is identified as CVE-2026-22983. The attack can only be performed from the local network. There is not any exploit available.
Upgrading the affected component is recommended.
vuldb.com
诚邀渠道合作伙伴共启新征程
1 month 3 weeks ago
火绒安全终端防护数据月报(2026-02)
1 month 3 weeks ago
火绒安全终端防护数据月报(2026-02)
Gunra
1 month 3 weeks ago
You must login to view this content
cohenido