Answer in brief
CVE-2026-20508 records a Unknown severity vulnerability in CISA ADP Vulnrichment. The current sources do not mark it as known exploited. The current feed maps MediaTek, Inc./MediaTek chipset (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps MediaTek, Inc./MediaTek chipset (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| MediaTek, Inc./MediaTek chipsetgeneric | MT2718 || MT6739 || MT6761 || MT6765 || MT6768 || MT6769 || MT6781 || MT6789 || MT6833 || MT6835 || MT6853 || MT6855 || MT6858 || MT6877 || MT6878 || MT6879 || MT6881 || MT6883 || MT6885 || MT6886 || MT6889 || MT6893 || MT6895 || MT6897 || MT6899 || MT6983 || MT6985 || MT6989 || MT6991 || MT6993 || MT8171 || MT8186 || MT8188 || MT8189 || MT8196 || MT8668 || MT8676 || MT8678 || MT8696 || MT8793 | Not reported |
Published upstream
Sep 7, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 7, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 7, 2026
In Power HAL, there is a possible escalation of privilege due to type confusion. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11165543; Issue ID: MSV-9012.
Quoted source text, attributed separately from HOL analysis.