GHSA-jf3x-c8h2-5gjj · Severity: high — In geniezone, there is a possible out of bounds write due to a missing bounds check. This could...
In geniezone, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10873936; Issue ID: MSV-6784.
Conclusion & alert: CVE-2026-20455 is rated Low Risk (33/100): CVSS High severity, with low exploitation likelihood (EPSS 0.02%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-01 | — | 0.02% | — |
Full EPSS history (1 record total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.8 | 3.1 | HIGH |
|
1.8 | 5.9 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
GHSA-jf3x-c8h2-5gjj · Severity: high — In geniezone, there is a possible out of bounds write due to a missing bounds check. This could...
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| mediatek | mt6739_firmware | — | cpe:2.3:o:mediatek:mt6739_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6761_firmware | — | cpe:2.3:o:mediatek:mt6761_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6765_firmware | — | cpe:2.3:o:mediatek:mt6765_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6768_firmware | — | cpe:2.3:o:mediatek:mt6768_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6781_firmware | — | cpe:2.3:o:mediatek:mt6781_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6789_firmware | — | cpe:2.3:o:mediatek:mt6789_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6835_firmware | — | cpe:2.3:o:mediatek:mt6835_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6853_firmware | — | cpe:2.3:o:mediatek:mt6853_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6855_firmware | — | cpe:2.3:o:mediatek:mt6855_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6877_firmware | — | cpe:2.3:o:mediatek:mt6877_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6878_firmware | — | cpe:2.3:o:mediatek:mt6878_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6879_firmware | — | cpe:2.3:o:mediatek:mt6879_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6883_firmware | — | cpe:2.3:o:mediatek:mt6883_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6885_firmware | — | cpe:2.3:o:mediatek:mt6885_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6886_firmware | — | cpe:2.3:o:mediatek:mt6886_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6889_firmware | — | cpe:2.3:o:mediatek:mt6889_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6893_firmware | — | cpe:2.3:o:mediatek:mt6893_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6895_firmware | — | cpe:2.3:o:mediatek:mt6895_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6897_firmware | — | cpe:2.3:o:mediatek:mt6897_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6899_firmware | — | cpe:2.3:o:mediatek:mt6899_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6983_firmware | — | cpe:2.3:o:mediatek:mt6983_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6985_firmware | — | cpe:2.3:o:mediatek:mt6985_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6989_firmware | — | cpe:2.3:o:mediatek:mt6989_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt6991_firmware | — | cpe:2.3:o:mediatek:mt6991_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8673_firmware | — | cpe:2.3:o:mediatek:mt8673_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8765_firmware | — | cpe:2.3:o:mediatek:mt8765_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8766_firmware | — | cpe:2.3:o:mediatek:mt8766_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8768_firmware | — | cpe:2.3:o:mediatek:mt8768_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8781_firmware | — | cpe:2.3:o:mediatek:mt8781_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8786_firmware | — | cpe:2.3:o:mediatek:mt8786_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8788_firmware | — | cpe:2.3:o:mediatek:mt8788_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8791t_firmware | — | cpe:2.3:o:mediatek:mt8791t_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8793_firmware | — | cpe:2.3:o:mediatek:mt8793_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8797_firmware | — | cpe:2.3:o:mediatek:mt8797_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8798_firmware | — | cpe:2.3:o:mediatek:mt8798_firmware:-:*:*:*:*:*:*:* |
| mediatek | mt8910_firmware | — | cpe:2.3:o:mediatek:mt8910_firmware:-:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://corp.mediatek.com/product-security-bulletin/June-2026 | Vendor Advisory |