CVE-2026-10634 | zephyrproject zephyr up to 4.4.x subsys/net/ip/tcp.c net_tcp_foreach use after free (GHSA-6c57-xfhw-j26x)

SecurityVulns

A vulnerability labeled as critical has been found in zephyrproject zephyr up to 4.4.x. The affected element is the function net_tcp_foreach of the file subsys/net/ip/tcp.c. The manipulation results in use after free.

This vulnerability is identified as CVE-2026-10634. The attack can only be performed from the local network. There is not any exploit available.

The affected component should be upgraded.VulDB Recent EntriesRead More