Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

optee_os — Vulnerabilities & Security Advisories 19

All 19 CVE vulnerabilities found in optee_os, with AI-generated Chinese analysis, references, and POCs.

This page aggregates security vulnerabilities associated with the OP-TEE OS product, categorized under Common Weakness Enumerations. It serves as a centralized resource for tracking known security flaws within this trusted execution environment software. The content collected on this page includes a comprehensive range of vulnerability types, such as buffer overflows, privilege escalation flaws, and logic errors that may compromise system integrity. The data covers historical records spanning from the initial release of the software up to the most recent updates, ensuring a complete chronological view of security incidents. This broad temporal scope allows researchers and developers to observe patterns in vulnerability discovery and patching over time. Here, you can track vendor advisories related to OP-TEE OS to stay informed about critical patches and recommended mitigations. Additionally, you can understand specific weakness classes by analyzing how different exploitation techniques have been reported and resolved within this codebase. The page also enables you to look up the product’s vulnerability history, providing insight into the evolution of security risks and the effectiveness of past remediation efforts. This structured approach facilitates better risk assessment and supports more informed decision-making for integration and maintenance teams relying on this trusted execution environment.

Vendor: OP-TEE

CVE ID Title CVSS Severity Published
CVE-2026-71969 OP-TEE OS 4.10.0 Buffer Underwrite via RSA NOPAD Encrypt/Decrypt Operations CWE-787 6.7 Medium 2026-08-10
CVE-2026-71968 OP-TEE OS 4.10.0 Use-After-Free via Trusted Application Loader TA_FLAG_CONCURRENT CWE-416 6.7 Medium 2026-08-10
CVE-2026-71967 OP-TEE OS 4.10.0 NULL Pointer Dereference DoS via Widevine PTA open_session CWE-476 5.5 Medium 2026-08-10
CVE-2026-53763 OP-TEE has AES-GCM 32-bit integer overflow in length counters that breaks authentication guarantee CWE-190 - - 2026-07-06
CVE-2026-44362 OP-TEE's subkey rollback protection can be bypassed with older subkey versions CWE-285 5.5 Medium 2026-07-06
CVE-2026-42546 OP-TEE has missing OPTEE_MSG_ATTR_TYPE_MASK in cleanup_shm_refs() leaks mobj references CWE-770 3.8 Low 2026-07-06
CVE-2026-41516 OP-TEE: Hisilicon HPRE PKCS#1 v1.5 Decryption Padding Oracle CWE-208 2.5 Low 2026-07-06
CVE-2026-41515 OP-TEE: RSA-OAEP padding oracle in NXP CAAM driver enables plaintext recovery CWE-208 2.5 Low 2026-07-06
CVE-2026-41514 OP-TEE: RSA-OAEP padding oracle in Hisilicon HPRE driver enables plaintext recovery CWE-208 2.5 Low 2026-07-06
CVE-2026-41434 OP-TEE has unbounded recursion in sanitize_client_object() CWE-121 3.3 Low 2026-07-06
CVE-2026-40257 OP-TEE has SHA-3 accelerated finalize heap overflow CWE-787 5.5 Medium 2026-07-06
CVE-2026-45702 OP-TEE has FF-A type confusion in SPMC tmem path that causes S-EL1 kernel panic CWE-843 4.4 Medium 2026-06-03
CVE-2026-45614 OP-TEE vulnerable to ECDH private key recovery CWE-347 4.7 Medium 2026-06-03
CVE-2026-40290 OP-TEE has a Use-After-Free race in FF-A shared-memory teardown CWE-416 7.8 High 2026-06-03
CVE-2026-33662 OP-TEE: RSASSA EMSA- PKCS1-v1_5 underflow in emsa_pkcs1_v1_5_encode() CWE-190 7.5 High 2026-04-24
CVE-2026-33317 OP-TEE: PKCS#11 TA out-of-bounds read and memory disclosure CWE-125 8.7 High 2026-04-24
CVE-2025-46733 REE userspace code can panic TAs, leading to fTPM PCR reset and data disclosure CWE-755 7.9 High 2025-07-04
CVE-2023-41325 OP-TEE double free in shdr_verify_signature CWE-415 7.4 High 2023-09-15
CVE-2022-46152 OP-TEE Trusted OS vulnerable to Improper Validation of Array Index in the cleanup_shm_refs function CWE-129 8.2 High 2022-11-29

All 19 known CVE vulnerabilities affecting optee_os with full Chinese analysis, references, and POCs where available.