Local Privilege Escalation: MediaTek Bluetooth Driver CVE-2026-20495
CVE-2026-20495 Published on August 3, 2026
In Bluetooth driver, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00488300; Issue ID: MSV-7296.
Vulnerability Analysis
CVE-2026-20495 can be exploited with local system access, and requires small amount of user privileges. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to be very high.
Weakness Type
What is an AuthZ Vulnerability?
The software does not perform an authorization check when an actor attempts to access a resource or perform an action.
CVE-2026-20495 has been classified to as an AuthZ vulnerability or weakness.
Affected Versions
MediaTek, Inc. MediaTek chipset:- Version MT7902 is affected.
- Version MT7920 is affected.
- Version MT7921 is affected.
- Version MT7922 is affected.
- Version MT7925 is affected.
- Version MT7927 is affected.