Insufficient API Bounds Checking in NXP NXPNfcRdLib
CVE-2026-87726
3.9LOW
What is CVE-2026-87726?
The NXP NXPNfcRdLib contains a vulnerability due to insufficient API bounds checking within the phalFelica module. This flaw can be exploited by an attacker with certain privileges or by untrusted third parties to access unintended memory regions. Exploiting this vulnerability could lead to a potential compromise of confidentiality, integrity, and availability of the system. NXP has addressed this issue in versions 07.18.00 and later, making it crucial for users to update their systems to mitigate risks associated with this vulnerability.
Affected Version(s)
NxpNfcRdLib RC663 < 07.18.00
