CVE-2026-20436
Received Received - Intake

Bounds Check Missing in WLAN STA Driver Enables Privilege Escalation

Vulnerability report for CVE-2026-20436, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-03-02

Last updated on: 2026-03-03

Assigner: MediaTek, Inc.

Description

In wlan STA driver, there is a possible escalation of privilege due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00473802; Issue ID: MSV-5970.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-03-02
Last Modified
2026-03-03
Generated
2026-07-27
AI Q&A
2026-03-02
EPSS Evaluated
2026-07-26
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
mediatek nbiot_sdk to 3.8 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-120 The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This vulnerability exists in the wlan STA driver where a missing bounds check can lead to a possible escalation of privilege.

Specifically, if a malicious actor already has System privilege, they could exploit this flaw to escalate their privileges further.

No user interaction is required to exploit this vulnerability.

Detection Guidance

I don't know

Impact Analysis

The impact of this vulnerability is a local escalation of privilege.

If an attacker already has System privilege on the affected system, they could exploit this vulnerability to gain higher privileges or perform unauthorized actions.

Compliance Impact

I don't know

Mitigation Strategies

I don't know

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-20436. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart