{"id":"CVE-2026-20524","title":"In apu, there is a possible memory corruption due to improper input validation","summary":"In apu, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: A…","severity":"none","cwe":["CWE-1285"],"vendor":"MediaTek, Inc.","product":"MediaTek chipset","affected":["mediatek_chipset MT6899","mediatek_chipset MT6993","mediatek_chipset MT8668","mediatek_chipset MT8781","mediatek_chipset MT8793","mediatek_chipset MT8910"],"published":"2026-10-05","updated":"2026-10-05","sourceUpdated":"2026-10-05T02:16:51.040","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-20524","references":[{"url":"https://www.mediatek.com/product-security-bulletin/October-2026","label":"security@mediatek.com"}],"tags":["nvd","cve.org"],"ingestedAt":"2026-10-05T02:10:36.193Z","slug":"CVE-2026-20524","body":"## Overview\n\nIn apu, there is a possible memory corruption due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11249004; Issue ID: MSV-9170.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"sunlit","depthScore":3,"depthScoreParts":{"impact":2.8,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}