Vulnerability Details CVE-2026-20431
In Modem, there is a possible system crash due to a logic error. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01106496; Issue ID: MSV-4467.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 15.8%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2026-20431
-
cpe:2.3:h:mediatek:mt6813:-
-
cpe:2.3:h:mediatek:mt6815:-
-
cpe:2.3:h:mediatek:mt6835:-
-
cpe:2.3:h:mediatek:mt6878:-
-
cpe:2.3:h:mediatek:mt6897:-
-
cpe:2.3:h:mediatek:mt6899:-
-
cpe:2.3:h:mediatek:mt6986:-
-
cpe:2.3:h:mediatek:mt6991:-
-
cpe:2.3:h:mediatek:mt6993:-
-
cpe:2.3:h:mediatek:mt8668:-
-
cpe:2.3:h:mediatek:mt8676:-
-
cpe:2.3:h:mediatek:mt8678:-
-
cpe:2.3:h:mediatek:mt8755:-
-
cpe:2.3:h:mediatek:mt8775:-
-
cpe:2.3:h:mediatek:mt8792:-
-
cpe:2.3:h:mediatek:mt8793:-
-
cpe:2.3:h:mediatek:mt8863:-
-
cpe:2.3:h:mediatek:mt8873:-
-
cpe:2.3:h:mediatek:mt8883:-
-
cpe:2.3:o:mediatek:mt6813_firmware:-
-
cpe:2.3:o:mediatek:mt6815_firmware:-
-
cpe:2.3:o:mediatek:mt6835_firmware:-
-
cpe:2.3:o:mediatek:mt6878_firmware:-
-
cpe:2.3:o:mediatek:mt6897_firmware:-
-
cpe:2.3:o:mediatek:mt6899_firmware:-
-
cpe:2.3:o:mediatek:mt6986_firmware:-
-
cpe:2.3:o:mediatek:mt6991_firmware:-
-
cpe:2.3:o:mediatek:mt6993_firmware:-
-
cpe:2.3:o:mediatek:mt8668_firmware:-
-
cpe:2.3:o:mediatek:mt8676_firmware:-
-
cpe:2.3:o:mediatek:mt8678_firmware:-
-
cpe:2.3:o:mediatek:mt8755_firmware:-
-
cpe:2.3:o:mediatek:mt8775_firmware:-
-
cpe:2.3:o:mediatek:mt8792_firmware:-
-
cpe:2.3:o:mediatek:mt8793_firmware:-
-
cpe:2.3:o:mediatek:mt8863_firmware:-
-
cpe:2.3:o:mediatek:mt8873_firmware:-
-
cpe:2.3:o:mediatek:mt8883_firmware:-