CVE-2026-21030
Improper Access Control in MediaTek Audio HAL
Publication date: 2026-06-05
Last updated on: 2026-06-05
Assigner: Samsung Mobile
Description
Description
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| mediatek | audio_hal | to smr_jun-2026_release_1 (exc) |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-UNKNOWN |
Attack-Flow Graph
AI Powered Q&A
Can you explain this vulnerability to me?
This vulnerability is an improper access control issue in the MediaTek Audio HAL component prior to the SMR June 2026 Release 1. It allows local attackers to trigger privileged functions that they should not normally have access to.
How can this vulnerability impact me? :
Because local attackers can trigger privileged functions due to improper access control, this vulnerability could lead to unauthorized actions being performed on the affected device. This may compromise the security and integrity of the system, potentially allowing attackers to escalate privileges or disrupt normal operations.