Answer in brief
CVE-2026-20516 records a Unknown severity vulnerability in CISA ADP Vulnrichment. The current sources do not mark it as known exploited. The current feed maps MediaTek, Inc./MediaTek chipset (generic). Check affected ranges and fixed versions before updating.
Analysis pending evidence review
HOL Guard separates source facts from reviewed analysis. See the methodology.
A CVSS score is not reported in the current record. The current sources do not mark it as known exploited. Treat this as a source-backed prioritization signal, not a statement about your environment.
Analysis status
Analysis pending evidence review
Factual feed record only; HOL analysis is not approved for indexing. Read the methodology.
The current feed maps MediaTek, Inc./MediaTek chipset (generic). Check affected ranges and fixed versions before updating.
| Package | Affected range | Fixed version |
|---|---|---|
| MediaTek, Inc./MediaTek chipsetgeneric | MT5586 || MT5862 || MT5867 || MT5870 || MT5871 || MT5872 || MT5873 || MT5876 || MT5877 || MT5879 || MT5888 || MT5889 || MT5895 || MT5896 || MT5897 || MT9015 || MT9025 || MT9026 || MT9027 || MT9032 || MT9603 || MT9618 || MT9633 || MT9649 || MT9660 || MT9676 || MT9687 || MT9689 || MT9972 | Not reported |
Published upstream
Sep 7, 2026
Evidence: source:cvelist:source_dates:source-dates:recordSource modified
Sep 7, 2026
Evidence: source:cvelist:source_dates:source-dates:recordFirst seen by HOL
Sep 7, 2026
In MiracastService, there is a possible escalation of privilege due to a confused deputy. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11060069 / DTV04881615; Issue ID: MSV-7882.
Quoted source text, attributed separately from HOL analysis.