In wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00473802; Issue ID: MSV-5970.
Metrics
Affected Vendors & Products
References
History
Tue, 03 Mar 2026 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek
Mediatek mt7902 Mediatek mt7920 Mediatek mt7921 Mediatek mt7922 Mediatek mt7925 Mediatek mt7927 Mediatek mt8696 Mediatek nbiot Sdk |
|
| CPEs | cpe:2.3:a:mediatek:nbiot_sdk:*:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7902:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7920:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7921:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7922:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7925:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7927:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt8696:-:*:*:*:*:*:*:* |
|
| Vendors & Products |
Mediatek
Mediatek mt7902 Mediatek mt7920 Mediatek mt7921 Mediatek mt7922 Mediatek mt7925 Mediatek mt7927 Mediatek mt8696 Mediatek nbiot Sdk |
Mon, 02 Mar 2026 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 02 Mar 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00473802; Issue ID: MSV-5970. | |
| Weaknesses | CWE-120 | |
| References |
|
Status: PUBLISHED
Assigner: MediaTek
Published: 2026-03-02T08:39:13.985Z
Updated: 2026-03-03T04:55:57.149Z
Reserved: 2025-11-03T01:30:59.011Z
Link: CVE-2026-20436
Updated: 2026-03-02T13:34:17.334Z
Status : Analyzed
Published: 2026-03-02T09:16:16.743
Modified: 2026-03-03T12:49:52.000
Link: CVE-2026-20436
No data.