在 FreeRTOS-Kernel 11.3.1 版本之前, 函数中存在队列集类型验证缺失的问题。在启用 MPU(内存保护单元)且配置了 的端口上,该漏洞可能使未特权任务读取特权级的内核内存。 为修复此问题,建议用户升级至 11.3.1 或更高版本。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| FreeRTOS | FreeRTOS-Kernel | 7.4.0≤ 11.3.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| FreeRTOS | FreeRTOS-Kernel | 7.4.0 ~ 11.3.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-77234 | 8.8 HIGH | Improper input validation in FreeRTOS-Kernel timer command handling |
| CVE-2026-77236 | 7.3 HIGH | Missing size validation in SecureContext_AllocateContext in FreeRTOS-Kernel |
| CVE-2026-77235 | 7.3 HIGH | Missing privilege check in SecureContext_FreeContext in FreeRTOS-Kernel |
No comments yet