{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-09-29T19:49:43.045","vulnerabilities":[{"cve":{"id":"CVE-2026-20402","sourceIdentifier":"security@mediatek.com","published":"2026-02-02T09:15:54.830","lastModified":"2026-06-17T10:17:21.550","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"In Modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00693083; Issue ID: MSV-5928."},{"lang":"es","value":"En el módem, existe una posible caída del sistema debido a una validación de entrada incorrecta. Esto podría llevar a una denegación de servicio remota, si un UE se ha conectado a una estación base maliciosa controlada por el atacante, sin necesidad de privilegios de ejecución adicionales. No se necesita interacción del usuario para la explotación. ID del parche: MOLY00693083; ID del problema: MSV-5928."}],"affected":[{"source":"security@mediatek.com","affectedData":[{"vendor":"MediaTek, Inc.","product":"MediaTek chipset","defaultStatus":"unaffected","versions":[{"version":"MT2735","status":"affected"},{"version":"MT6833","status":"affected"},{"version":"MT6853","status":"affected"},{"version":"MT6855","status":"affected"},{"version":"MT6873","status":"affected"},{"version":"MT6875","status":"affected"},{"version":"MT6877","status":"affected"},{"version":"MT6880","status":"affected"},{"version":"MT6883","status":"affected"},{"version":"MT6885","status":"affected"},{"version":"MT6889","status":"affected"},{"version":"MT6890","status":"affected"},{"version":"MT6891","status":"affected"},{"version":"MT6893","status":"affected"},{"version":"MT8675","status":"affected"},{"version":"MT8771","status":"affected"},{"version":"MT8791","status":"affected"},{"version":"MT8791T","status":"affected"},{"version":"MT8797","status":"affected"}]}]}],"metrics":{"cvssMetricV31":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","baseScore":6.5,"baseSeverity":"MEDIUM","attackVector":"ADJACENT_NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":3.6}],"ssvcV203":[{"source":"134c704f-9b21-4f2e-91b3-4a467353bcc0","ssvcData":{"timestamp":"2026-02-17T14:17:13.680775Z","id":"CVE-2026-20402","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalImpact":"partial"}],"role":"CISA Coordinator","version":"2.0.3"}}]},"weaknesses":[{"source":"security@mediatek.com","type":"Secondary","description":[{"lang":"en","value":"CWE-787"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"NVD-CWE-noinfo"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:mediatek:nr15:-:*:*:*:*:*:*:*","matchCriteriaId":"E30A2D2E-6A72-4070-A471-EEE75F7D07F2"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt2735:-:*:*:*:*:*:*:*","matchCriteriaId":"7F1D09FC-5BE9-4B23-82F1-3C6EAC5711A6"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6833:-:*:*:*:*:*:*:*","matchCriteriaId":"9814939B-F05E-4870-90C0-7C0F6BAAEB39"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6853:-:*:*:*:*:*:*:*","matchCriteriaId":"366F1912-756B-443E-9962-224937DD7DFB"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6855:-:*:*:*:*:*:*:*","matchCriteriaId":"89AFEE24-7AAD-4EDB-8C3E-EDBA3240730A"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6873:-:*:*:*:*:*:*:*","matchCriteriaId":"F6B8A36E-C5FB-44AE-A1C3-50EBF4C68F6B"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6875:-:*:*:*:*:*:*:*","matchCriteriaId":"80BDC5EC-E822-4BC7-8C0D-E8AD8396E8FE"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6877:-:*:*:*:*:*:*:*","matchCriteriaId":"7CA9352F-E9BD-4656-9B7C-4AFEE2C78E58"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6880:-:*:*:*:*:*:*:*","matchCriteriaId":"68CF4A7A-3136-4C4C-A795-81323896BE11"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6883:-:*:*:*:*:*:*:*","matchCriteriaId":"15E2EC3F-9FB3-488B-B1C1-2793A416C755"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6885:-:*:*:*:*:*:*:*","matchCriteriaId":"DD64413C-C774-4C4F-9551-89E1AA9469EE"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6889:-:*:*:*:*:*:*:*","matchCriteriaId":"3B787DC3-8E5A-4968-B20B-37B6257FAAE2"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:*","matchCriteriaId":"171D1C08-F055-44C0-913C-AA2B73AF5B72"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6891:-:*:*:*:*:*:*:*","matchCriteriaId":"D8E91CA4-CA5B-40D1-9A96-2B875104BCF4"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt6893:-:*:*:*:*:*:*:*","matchCriteriaId":"213B5C7F-D965-4312-9CDF-4F06FA77D401"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt8675:-:*:*:*:*:*:*:*","matchCriteriaId":"03E6123A-7603-4EAB-AFFB-229E8A040709"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt8771:-:*:*:*:*:*:*:*","matchCriteriaId":"0D09F23D-D023-4A60-B426-61251FDD8A5A"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt8791:-:*:*:*:*:*:*:*","matchCriteriaId":"9CD2C3EC-B62D-4616-964F-FDBE5B14A449"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt8791t:-:*:*:*:*:*:*:*","matchCriteriaId":"1BB05B1D-77C9-4E42-91AD-9F087413DC20"},{"vulnerable":false,"criteria":"cpe:2.3:h:mediatek:mt8797:-:*:*:*:*:*:*:*","matchCriteriaId":"2B469BF4-5961-42E9-814B-1BE06D182E45"}]}]}],"references":[{"url":"https://corp.mediatek.com/product-security-bulletin/February-2026","source":"security@mediatek.com","tags":["Vendor Advisory"]}]}}]}