What is CVE-2026-20474?
This vulnerability allows a local escalation of privilege in the 'display' component due to a race condition. If a malicious actor has already obtained System privilege, they can further escalate without user interaction. Affected systems should be updated immediately with Patch ID ALPS11019183.
Azərbaycanca: Bu qüsur 'display' komponentindəki yarışma vəziyyəti səbəbindən imtiyaz yüksəltməyə imkan verir. Zərərli aktor artıq System imtiyazına malikdirsə, heç bir istifadəçi əməliyyatı tələb etmədən yerli imtiyaz yüksəldə bilər. Təsirə məruz qalan sistemlər dərhal ALPS11019183 yamaq identifikatoru ilə yenilənməlidir.
FAQ2
What privilege level must an attacker already possess to successfully exploit CVE-2026-20474?
The malicious actor must have already obtained System privilege to exploit this vulnerability.
Which patch ID should be applied to remediate CVE-2026-20474?
Affected systems should be updated immediately with Patch ID ALPS11019183.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.