CVE-2026-11809 | Zephyr Project up to 4.4.1 UpdateHub updatehub.c z_impl_updatehub_probe out-of-bounds
A vulnerability marked as critical has been reported in Zephyr Project Zephyr up to 4.4.1. Impacted is the function z_impl_updatehub_probe of the file subsys/mgmt/updatehub/updatehub.c of the component UpdateHub. Performing a manipulation results in out-of-bounds read.
This vulnerability is cataloged as CVE-2026-11809. It is possible to initiate the attack remotely. There is no exploit available.
It is suggested to upgrade the affected component.VulDB Recent EntriesRead More