PT-2026-57088 · Unknown · Fabrickeymaster Trustlet
CVE-2026-21046
·
Published
2026-07-10
·
Updated
2026-07-11
CVSS v4.0
8.4
High
| Vector | AV:L/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
fabricKeymaster trustlet versions prior to SMR Jul-2026 Release 1
Description
A Time-of-check time-of-use (TOCTOU) race condition exists in the fabricKeymaster trustlet. This occurs when a program checks the state of a resource before using it, but the state changes between the check and the use. This flaw allows local privileged attackers to execute arbitrary code.
Recommendations
Update fabricKeymaster trustlet to SMR Jul-2026 Release 1.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Fabrickeymaster Trustlet