CVE-2026-20439: Use After Free
In imgsys, there is a possible system crash due to use after free. This could lead to local denial of service if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10431955; Issue ID: MSV-5826.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-20439?
CVE-2026-20439 has a severity level that indicates a possible local denial of service due to a use-after-free vulnerability.
How do I fix CVE-2026-20439?
To resolve CVE-2026-20439, you should apply the patch identified by ALPS10431955.
What systems are affected by CVE-2026-20439?
CVE-2026-20439 affects Google Android version 15.0 and systems with MediaTek processors listed in the vulnerability details.
Is user interaction required to exploit CVE-2026-20439?
No, user interaction is not needed for the exploitation of CVE-2026-20439 once system privileges have been acquired.
What type of impact does CVE-2026-20439 have?
CVE-2026-20439 can lead to a local denial of service, potentially causing a system crash.