CVE-2026-20516

MEDIUMCVSS 5.5/10EPSS 0.09%

Last modified

CVE-2026-20516 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. In MiracastService, there is a possible escalation of privilege due to a confused deputy. This could lead to local denial of service with User execution privileges needed. EPSS estimates a 0.09% chance of exploitation in the next 30 days.

Description

In MiracastService, there is a possible escalation of privilege due to a confused deputy. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11060069 / DTV04881615; Issue ID: MSV-7882.

Metrics

EPSS Probability
0.09%

0.7th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

Source: CNA advisory (CVE.org). NVD analysis pending.

VendorProductVersions
MediaTek, Inc.MediaTek chipsetMT5586; MT5862; MT5867; MT5870; MT5871; MT5872; MT5873; MT5876; MT5877; MT5879; MT5888; MT5889; MT5895; MT5896; MT5897; MT9015; MT9025; MT9026; MT9027; MT9032; MT9603; MT9618; MT9633; MT9649; MT9660; MT9676; MT9687; MT9689; MT9972

References

Timeline

Published
Last Modified
Status
Deferred

Frequently Asked Questions

What is CVE-2026-20516?
In MiracastService, there is a possible escalation of privilege due to a confused deputy. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS11060069 / DTV04881615; Issue ID: MSV-7882.
How severe is CVE-2026-20516?
CVE-2026-20516 has a CVSS score of 5.5/10 (MEDIUM severity). The EPSS model estimates a 0.09% probability of exploitation in the next 30 days.
How do I fix CVE-2026-20516?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

How Strix Helps

Related CVEs from 2026

Are you affected by CVE-2026-20516?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST