FreeRTOS.FreeRTOS-Kernel is vulnerable to Out-of-bounds Write
73
High Risk
On ARM TrustZone (ARMv8-M) configurations, SecureContext_AllocateContext does not validate the requested secure-stack size. A non-secure task can request an undersized or overflowing allocation, causing the allocator to write stack-overflow protection markers beyond the allocated buffer. This out-of-bounds write corrupts adjacent secure-heap structures and can cause crashes or unpredictable behavior. The fix validates the requested size and rejects allocations that would overflow.
You are affected if you are using a version that falls within the vulnerable range and you build an ARM TrustZone (ARMv8-M) port that uses secure contexts.
FreeRTOS.FreeRTOS-Kernel is vulnerable to Out-of-bounds Write in versions 10.2.0 - 11.3.0.
Upgrade the FreeRTOS.FreeRTOS-Kernel library to the patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant