Race Condition Enables Local Priv Escalation in MediaTek Chipset
CVE-2026-20474 Published on August 3, 2026
In display, there is a possible escalation of privilege due to a race condition. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11019183; Issue ID: MSV-7758.
Vulnerability Analysis
CVE-2026-20474 is exploitable with local system access, and requires user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality and integrity, and no impact on availability.
Weakness Type
What is a TOCTTOU Vulnerability?
The software checks the state of a resource before using that resource, but the resource's state can change between the check and the use in a way that invalidates the results of the check. This can cause the software to perform invalid actions when the resource is in an unexpected state. This weakness can be security-relevant when an attacker can influence the state of the resource between check and use. This can happen with shared resources such as files, memory, or even variables in multithreaded programs.
CVE-2026-20474 has been classified to as a TOCTTOU vulnerability or weakness.
Affected Versions
MediaTek, Inc. MediaTek chipset:- Version MT6991 is affected.
- Version MT6993 is affected.
- Version MT8126 is affected.
- Version MT8171 is affected.
- Version MT8188 is affected.
- Version MT8189 is affected.
- Version MT8367 is affected.
- Version MT8668 is affected.
- Version MT8676 is affected.
- Version MT8678 is affected.
- Version MT8766 is affected.
- Version MT8768 is affected.
- Version MT8781 is affected.
- Version MT8786 is affected.
- Version MT8791T is affected.
- Version MT8799 is affected.
- Version MT8910 is affected.