CVE-2026-20501 | MediaTek MT8910 vdec heap-based overflow (ALPS11262030)

SecurityVulns

A vulnerability has been found in MediaTek MT2718, MT6580, MT6739, MT6761, MT6765, MT6768, MT6769, MT6779, MT6781, MT6785, MT6789, MT6833, MT6835, MT6853, MT6855, MT6858, MT6873, MT6877, MT6878, MT6879, MT6881, MT6883, MT6885, MT6886, MT6889, MT6893, MT6895, MT6897, MT6899, MT6983, MT6985, MT6989, MT6991, MT6993, MT8126, MT8171, MT8186, MT8188, MT8189, MT8195, MT8196, MT8367, MT8391, MT8395, MT8668, MT8676, MT8678, MT8696, MT8781, MT8788E, MT8792, MT8799 and MT8910 and classified as very critical. The affected element is an unknown function of the component vdec. This manipulation causes heap-based buffer overflow.

This vulnerability appears as CVE-2026-20501. The attack requires local access. There is no available exploit.

Applying a patch is the recommended action to fix this issue.VulDB Recent EntriesRead More