Security
Loading…

CVE-2026-20511

MEDIUMCVSS 6.7
Description

In SurfaceFlinger, there is a possible memory corruption due to use after free. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11123860; Issue ID: MSV-8890.

Timeline
Published:September 7th, 2026 2:17 AM
Last modified:September 8th, 2026 6:38 PM
CVSS Scoring

CVSS v3: 6.7 (MEDIUM)

CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Weaknesses (CWE)
References & Reports
Advisories, patches, and third-party reports

Source: NIST NVD · Data may lag official sources by up to one minute