Vulnerability Details CVE-2026-20449
In Modem, there is a possible system crash due to a heap buffer overflow. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY01760138; Issue ID: MSV-6148.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 8.7%
CVSS Severity
CVSS v3 Score 6.5
Products affected by CVE-2026-20449
-
cpe:2.3:h:mediatek:mt2735:-
-
cpe:2.3:h:mediatek:mt2737:-
-
cpe:2.3:h:mediatek:mt6739:-
-
cpe:2.3:h:mediatek:mt6761:-
-
cpe:2.3:h:mediatek:mt6762:-
-
cpe:2.3:h:mediatek:mt6763:-
-
cpe:2.3:h:mediatek:mt6765:-
-
cpe:2.3:h:mediatek:mt6767:-
-
cpe:2.3:h:mediatek:mt6768:-
-
cpe:2.3:h:mediatek:mt6769:-
-
cpe:2.3:h:mediatek:mt6771:-
-
cpe:2.3:h:mediatek:mt6779:-
-
cpe:2.3:h:mediatek:mt6781:-
-
cpe:2.3:h:mediatek:mt6783:-
-
cpe:2.3:h:mediatek:mt6785:-
-
cpe:2.3:h:mediatek:mt6789:-
-
cpe:2.3:h:mediatek:mt6813:-
-
cpe:2.3:h:mediatek:mt6815:-
-
cpe:2.3:h:mediatek:mt6833:-
-
cpe:2.3:h:mediatek:mt6835:-
-
cpe:2.3:h:mediatek:mt6853:-
-
cpe:2.3:h:mediatek:mt6855:-
-
cpe:2.3:h:mediatek:mt6858:-
-
cpe:2.3:h:mediatek:mt6873:-
-
cpe:2.3:h:mediatek:mt6875:-
-
cpe:2.3:h:mediatek:mt6877:-
-
cpe:2.3:h:mediatek:mt6878:-
-
cpe:2.3:h:mediatek:mt6879:-
-
cpe:2.3:h:mediatek:mt6880:-
-
cpe:2.3:h:mediatek:mt6883:-
-
cpe:2.3:h:mediatek:mt6885:-
-
cpe:2.3:h:mediatek:mt6886:-
-
cpe:2.3:h:mediatek:mt6889:-
-
cpe:2.3:h:mediatek:mt6890:-
-
cpe:2.3:h:mediatek:mt6891:-
-
cpe:2.3:h:mediatek:mt6893:-
-
cpe:2.3:h:mediatek:mt6895:-
-
cpe:2.3:h:mediatek:mt6896:-
-
cpe:2.3:h:mediatek:mt6897:-
-
cpe:2.3:h:mediatek:mt6899:-
-
cpe:2.3:h:mediatek:mt6980:-
-
cpe:2.3:h:mediatek:mt6983:-
-
cpe:2.3:h:mediatek:mt6985:-
-
cpe:2.3:h:mediatek:mt6986d:-
-
cpe:2.3:h:mediatek:mt6988:-
-
cpe:2.3:h:mediatek:mt6989:-
-
cpe:2.3:h:mediatek:mt6990:-
-
cpe:2.3:h:mediatek:mt6991:-
-
cpe:2.3:h:mediatek:mt6993:-
-
cpe:2.3:h:mediatek:mt8668:-
-
cpe:2.3:h:mediatek:mt8673:-
-
cpe:2.3:h:mediatek:mt8675:-
-
cpe:2.3:h:mediatek:mt8676:-
-
cpe:2.3:h:mediatek:mt8678:-
-
cpe:2.3:h:mediatek:mt8755:-
-
cpe:2.3:h:mediatek:mt8771:-
-
cpe:2.3:h:mediatek:mt8775:-
-
cpe:2.3:h:mediatek:mt8791:-
-
cpe:2.3:h:mediatek:mt8791t:-
-
cpe:2.3:h:mediatek:mt8792:-
-
cpe:2.3:h:mediatek:mt8793:-
-
cpe:2.3:h:mediatek:mt8795t:-
-
cpe:2.3:h:mediatek:mt8797:-
-
cpe:2.3:h:mediatek:mt8798:-
-
cpe:2.3:h:mediatek:mt8863:-
-
cpe:2.3:h:mediatek:mt8873:-
-
cpe:2.3:h:mediatek:mt8883:-
-
cpe:2.3:h:mediatek:mt8893:-
-
cpe:2.3:o:mediatek:mt2735_firmware:-
-
cpe:2.3:o:mediatek:mt2737_firmware:-
-
cpe:2.3:o:mediatek:mt6739_firmware:-
-
cpe:2.3:o:mediatek:mt6761_firmware:-
-
cpe:2.3:o:mediatek:mt6762_firmware:-
-
cpe:2.3:o:mediatek:mt6763_firmware:-
-
cpe:2.3:o:mediatek:mt6765_firmware:-
-
cpe:2.3:o:mediatek:mt6767_firmware:-
-
cpe:2.3:o:mediatek:mt6768_firmware:-
-
cpe:2.3:o:mediatek:mt6769_firmware:-
-
cpe:2.3:o:mediatek:mt6771_firmware:-
-
cpe:2.3:o:mediatek:mt6779_firmware:-
-
cpe:2.3:o:mediatek:mt6781_firmware:-
-
cpe:2.3:o:mediatek:mt6783_firmware:-
-
cpe:2.3:o:mediatek:mt6785_firmware:-
-
cpe:2.3:o:mediatek:mt6789_firmware:-
-
cpe:2.3:o:mediatek:mt6813_firmware:-
-
cpe:2.3:o:mediatek:mt6815_firmware:-
-
cpe:2.3:o:mediatek:mt6833_firmware:-
-
cpe:2.3:o:mediatek:mt6835_firmware:-
-
cpe:2.3:o:mediatek:mt6853_firmware:-
-
cpe:2.3:o:mediatek:mt6855_firmware:-
-
cpe:2.3:o:mediatek:mt6858_firmware:-
-
cpe:2.3:o:mediatek:mt6873_firmware:-
-
cpe:2.3:o:mediatek:mt6875_firmware:-
-
cpe:2.3:o:mediatek:mt6877_firmware:-
-
cpe:2.3:o:mediatek:mt6878_firmware:-
-
cpe:2.3:o:mediatek:mt6879_firmware:-
-
cpe:2.3:o:mediatek:mt6880_firmware:-
-
cpe:2.3:o:mediatek:mt6883_firmware:-
-
cpe:2.3:o:mediatek:mt6885_firmware:-
-
cpe:2.3:o:mediatek:mt6886_firmware:-
-
cpe:2.3:o:mediatek:mt6889_firmware:-
-
cpe:2.3:o:mediatek:mt6890_firmware:-
-
cpe:2.3:o:mediatek:mt6891_firmware:-
-
cpe:2.3:o:mediatek:mt6893_firmware:-
-
cpe:2.3:o:mediatek:mt6895_firmware:-
-
cpe:2.3:o:mediatek:mt6896_firmware:-
-
cpe:2.3:o:mediatek:mt6897_firmware:-
-
cpe:2.3:o:mediatek:mt6899_firmware:-
-
cpe:2.3:o:mediatek:mt6980_firmware:-
-
cpe:2.3:o:mediatek:mt6983_firmware:-
-
cpe:2.3:o:mediatek:mt6985_firmware:-
-
cpe:2.3:o:mediatek:mt6986d_firmware:-
-
cpe:2.3:o:mediatek:mt6988_firmware:-
-
cpe:2.3:o:mediatek:mt6989_firmware:-
-
cpe:2.3:o:mediatek:mt6990_firmware:-
-
cpe:2.3:o:mediatek:mt6991_firmware:-
-
cpe:2.3:o:mediatek:mt6993_firmware:-
-
cpe:2.3:o:mediatek:mt8668_firmware:-
-
cpe:2.3:o:mediatek:mt8673_firmware:-
-
cpe:2.3:o:mediatek:mt8675_firmware:-
-
cpe:2.3:o:mediatek:mt8676_firmware:-
-
cpe:2.3:o:mediatek:mt8678_firmware:-
-
cpe:2.3:o:mediatek:mt8755_firmware:-
-
cpe:2.3:o:mediatek:mt8771_firmware:-
-
cpe:2.3:o:mediatek:mt8775_firmware:-
-
cpe:2.3:o:mediatek:mt8791_firmware:-
-
cpe:2.3:o:mediatek:mt8791t_firmware:-
-
cpe:2.3:o:mediatek:mt8792_firmware:-
-
cpe:2.3:o:mediatek:mt8793_firmware:-
-
cpe:2.3:o:mediatek:mt8795t_firmware:-
-
cpe:2.3:o:mediatek:mt8797_firmware:-
-
cpe:2.3:o:mediatek:mt8798_firmware:-
-
cpe:2.3:o:mediatek:mt8863_firmware:-
-
cpe:2.3:o:mediatek:mt8873_firmware:-
-
cpe:2.3:o:mediatek:mt8883_firmware:-
-
cpe:2.3:o:mediatek:mt8893_firmware:-