PT-2026-97830 · Altera · Trusted Firmware On Hps

CVE-2026-58006

·

Published

2026-09-24

·

Updated

2026-09-24

CVSS v3.1

8.1

High

VectorAV:L/AC:L/PR:H/UI:N/S:C/C:L/I:H/A:H
Name of the Vulnerable Software and Affected Versions Altera Trusted Firmware on HPS versions prior to socfpga v2.14.0
Description An untrusted pointer dereference issue in the Altera SoCFPGA BL31 Mailbox output pointer validation allows for the exploitation of improperly configured or implemented memory protections. This can lead to secure-memory corruption at Exception Level 3 (EL3), which is the highest privilege level in the ARM architecture.
Recommendations Update Altera Trusted Firmware on HPS to a version newer than socfpga v2.14.0.

Fix

Untrusted Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-58006

Affected Products

Trusted Firmware On Hps