Out-of-Bounds Write Vulnerability in NXP NFC Controller Software by NXP Semiconductors
CVE-2026-57014
Currently unrated
What is CVE-2026-57014?
A vulnerability exists in the NXP NFC Controller software where a missing bounds check in the function phNxpNciHal_ext_process_nfc_init_rsp can lead to an out-of-bounds write. This may allow for local privilege escalation without the need for additional execution rights. Exploitation does not require user interaction, making it pertinent for users to review their NXP NFC implementations to ensure security measures are in place.
Affected Version(s)
Android Android kernel