CVE-2026-17052 | ZephyrProject Zephyr up to 4.4.1 Time-aware GPIO timeaware_gpio_handlers.c z_vrfy_tgpio_pin_read_ts_ec timestamp/event_count privileges management

SecurityVulns

A vulnerability marked as very critical has been reported in ZephyrProject Zephyr up to 4.4.1. Affected is the function z_vrfy_tgpio_pin_read_ts_ec of the file drivers/timeaware_gpio/timeaware_gpio_handlers.c of the component Time-aware GPIO. The manipulation of the argument timestamp/event_count leads to improper privilege management.

This vulnerability is traded as CVE-2026-17052. An attack has to be approached locally. There is no exploit available.

It is suggested to upgrade the affected component.VulDB Recent EntriesRead More