OP-TEE Trusted OS是OP-TEE组织的一款可信执行环境操作系统。 OP-TEE Trusted OS 4.10.0及之前版本存在异常处理不当漏洞,该漏洞源于Widevine伪TA的open_session处理器存在空指针取消引用问题,可能导致启用CFG_WIDEVINE_PTA时普通世界客户端引发拒绝服务。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-71968 | 6.7 MEDIUM | OP-TEE OS 4.10.0 Use-After-Free via Trusted Application Loader TA_FLAG_CONCURRENT |
| CVE-2026-71969 | 6.7 MEDIUM | OP-TEE OS 4.10.0 Buffer Underwrite via RSA NOPAD Encrypt/Decrypt Operations |
No comments yet