CVE-2026-20511: Schwachstellen-Eintrag (NVD)
In SurfaceFlinger, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11123860; Issue ID: MSV-8890.
Zero-Day & Vulnerability Intelligence Hub
Echtzeit-Tracking mit EPSS Exploit-Wahrscheinlichkeiten, Angriffsvektor-Decodern und KI-Patch-Anleitungen.
📊 Historien-Charts — Criticals-Trend · Vendors · EPSS-Verteilung
| Tier | 2026-08-29 | 2026-09-06 |
|---|---|---|
| ≥90 % | 4 | 0 |
| ≥50 % | 4 | 0 |
| ≥10 % | 3 | 0 |
| <10 % | 304 | 300 |
CVE-2026-20511 | MediaTek MT6858/MT6881/MT6993/MT8668 SurfaceFlinger use after free (ALPS11123860 / EUVD-2026-72204)
A vulnerability labeled as critical has been found in MediaTek MT6858, MT6881, MT6993 and MT8668. This affects an unknown part of the component SurfaceFlinger. Such manipulation leads to use after free. This vulnerability is referenced as C