Heap Corruption Vulnerability in Zephyr RTOS Kernel Components
CVE-2026-19569
8.8HIGH
What is CVE-2026-19569?
This vulnerability involves a flaw in the dynamic object creation process within the Zephyr RTOS kernel. Specifically, the size computations for dynamically allocated kernel objects and thread stack elements do not appropriately handle unsigned wrap-around. When an attacker provides a size argument that is close to SIZE_MAX, it leads to unexpectedly small heap allocations. This can trigger out-of-bounds writes to kernel memory, allowing unprivileged user-mode threads to manipulate kernel resource pools and potentially execute arbitrary code or cause system corruption. The flaw is exacerbated by specific configuration options, allowing for high-impact exploitation given adequate privileges.
Affected Version(s)
zephyr 3.5.0 <= 4.4.2
