在 HPS 上的 Altera 可信固件中存在不可信指针解引用漏洞,该漏洞可能导致利用配置不当或实现错误的内存保护机制。 此问题影响以下版本的可信固件:socfpga_v2.14.0 及更早版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Altera | Trusted Firmware | ≤ socfpga_v2.14.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Altera | Trusted Firmware | 0 ~ socfpga_v2.14.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-58008 | 8.1 HIGH | Unchecked HKDF key-size input in EL3 causes a stack buffer overflow |
| CVE-2026-58004 | 8.1 HIGH | Crafted oversized firmware image causes EL3 stack overflow during VAB authentication on Tr |
| CVE-2026-58005 | 8.1 HIGH | Unvalidated SiP v2 mailbox pointers allow non-secure EL1 access to arbitrary physical addr |
| CVE-2026-58006 | 8.1 HIGH | Altera SoCFPGA BL31 Mailbox Output Pointer Validation Enables EL3 Secure-Memory Corruption |
| CVE-2026-13465 | 8.1 HIGH | EL3 Stack Buffer Overflow in FCS HKDF Request |
| CVE-2026-13467 | 8.1 HIGH | Systemic Missing Address Validation in SiP SMC Handlers |
| CVE-2026-13466 | 8.1 HIGH | Unit Confusion in VAB Authentication |
No comments yet