What the vulnerability does

01Description

In Telephony, there is a possible memory corruption due to a heap buffer overflow. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: ALPS11006447; Issue ID: MSV-7871.

Key dates

02Disclosure timeline

July 1, 2026 CVE published
July 2, 2026 Record updated