Back to CVE List

CVE-2026-5818

Vulnerability Description

Incorrect check of function return value in Caliptra Core Runtime Firmware (ActivateFirmwareCmd::activate_fw modules) allows bypass of Caliptra Core's verification of the MCU FW during a hitless update.

This issue affects Core Runtime Firmware: from 2.0.0 through 2.0.1, 2.1.0.

Vulnerability Details

Published Date
Last Modified
CWE ID
CWE-253
Source
NVD

External References

Discussion (0)

Add Comment

No comments yet. Be the first!