{"id":"CVE-2026-102709","published":"2026-09-29T18:17:09.863","lastModified":"2026-09-29T19:00:16.623","description":"Improper validation of non-secure (NS) pointers in multiple TrustZone-M non-secure callable (NSC) entry functions allows an attacker executing in the non-secure world to supply pointers to secure memory. The secure firmware subsequently dereferences these attacker-controlled pointers without verifying that they reference non-secure memory, resulting in unintended disclosure of secure memory contents. This violates the isolation guarantees provided by Arm TrustZone-M and can be leveraged as a memory disclosure or corruption primitive that may enable recovery of sensitive cryptographic material.","cvssScore":null,"cvssSeverity":null,"cvssVector":null,"cwes":["CWE-200","CWE-501","CWE-822"],"vendors":[],"products":[],"references":[{"url":"https://github.com/eclipse-threadx/threadx/security/advisories/GHSA-ffg5-m7vh-vwrp","tags":[]}],"exploitRefs":[{"url":"https://github.com/eclipse-threadx/threadx/security/advisories/GHSA-ffg5-m7vh-vwrp","tags":[]}],"hasPoc":true,"ai":null}