Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.7

Missing Bounds Check in MAE Allows Local Privilege Escalation

CVE-2026-20440
Summary

A missing safety check in MAE could allow a hacker to gain more control over the system if they already have a high level of access. This can happen without the need for user interaction. Patching is available to fix this issue.

What to do

No fix is available yet. Check with your software vendor for updates.

Affected software
VendorProductAffected versionsFix available
google android 15.0 –
Original title
In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User ...
Original description
In MAE, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS10431968; Issue ID: MSV-5824.
nvd CVSS3.1 6.7
Vulnerability type
CWE-1285
CWE-787 Out-of-bounds Write
Published: 2 Mar 2026 · Updated: 13 Mar 2026 · First seen: 6 Mar 2026