CVE-2026-20529: MediaTek Battery vulnerability
Published Oct 5, 2026
·Updated
In battery, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11276677; Issue ID: MSV-9217.
Affected Software
1 affected component
MediaTek Battery
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch ALPS11276677
Event History
Oct 5, 2026
CVE Published
via MITRE·01:40 AM
Data Sourced
via MITRE·01:40 AM
DescriptionWeakness
Data Sourced
via NVD·02:16 AM
DescriptionWeakness
Frequently Asked Questions
1
Does the advisory identify affected software versions or device models?
No affected versions, device models, or build identifiers are provided in the available information.
2
Is there information on whether default configurations are affected?
No configuration requirements or default-exposure details are provided.
3
Are indicators of compromise or detection guidance available?
No detection guidance, logs, artifacts, or indicators of compromise are included.