CVE-2026-77236
EUVD-2026-6401721.08.2026, 18:16
Missing minimum size validation in secure context allocation in FreeRTOS-Kernel before 11.3.1 might allow local users to corrupt secure-world heap metadata via an out-of-bounds write with an undersized stack size parameter. To remediate this issue, users should upgrade to version 11.3.1 or later.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| amazon | freertos | 10.2.0 ≤ 𝑥 < 11.3.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration