HB
MediaTek WLAN Heap Overflow: CVE-2026-20452 — Remote Code Execution on Millions of Wi-Fi Routers
A heap buffer overflow in MediaTek’s Wi-Fi Access Point driver lets any associated client on the same network corrupt kernel memory and execute arbitrary code on the router — no user interaction, no internet access, just Wi-Fi proximity. CVSS 8.0. Nine Wi-Fi chipsets affec…