What is CVE-2026-20490?
CVE-2026-20490 is an out of bounds read vulnerability in the ccci component due to a missing bounds check. This flaw could lead to a local denial of service if an attacker has already obtained System privilege, requiring no user interaction. Affected devices should apply the security update associated with Patch ID: ALPS10981501.
Azərbaycanca: CVE-2026-20490, ccci komponentində bounds check-in olmaması səbəbindən yaranan out of bounds read zəifliyidir. Bu zəiflik, System səviyyəsində imtiyaz əldə etmiş bir təcavüzkar tərəfindən lokalo denial of service hücumu üçün istismar edilə bilər. Təsirə məruz qalan cihazlar üçün ALPS10981501 yamaq identifikatoru ilə təqdim olunan təhlükəsizlik yeniləməsi tətbiq edilməlidir.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
What type of attack can be carried out using the CVE-2026-20490 vulnerability?
This vulnerability can be exploited for a local denial of service (DoS) attack by an attacker who has already obtained System privilege.
Which patch identifier addresses the CVE-2026-20490 vulnerability?
The vulnerability is addressed by a security update associated with Patch ID: ALPS10981501.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.