In dpe, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10114841; Issue ID: MSV-4451.
2026-01-06T02:15:44.970
2026-01-08T19:20:46.453
Analyzed
CVSSv3.1: 6.7 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | android | 16.0 | Yes | |
| Hardware | mediatek | mt6899 | - | No |
| Hardware | mediatek | mt6991 | - | No |
| Hardware | mediatek | mt8793 | - | No |