What is CVE-2026-11835?
CVE-2026-11835 is a TOCTOU vulnerability in Caliptra Core ROM's UpdateResetFlow::run() function, combined with missing input validation. It allows a compromised local attacker to silently bypass secure boot by supplying an AXI staging address not validated against the strap configuration. Affected systems require immediate ROM updates and restricted local access.
Azərbaycanca: CVE-2026-11835, Caliptra Core ROM-un UpdateResetFlow::run() funksiyasında aşkar edilmiş TOCTOU zəifliyidir. Bu zəiflik giriş doğrulamasının olmaması ilə birləşərək, lokal təcavüzkara strap konfiqurasiyası ilə yoxlanılmamış AXI staging ünvanı təqdim edərək təhlükəsiz yükləməni səssizcə keçməyə imkan verir. Sistem sahibləri Caliptra Core ROM-u ən son versiyaya yeniləməli və fiziki/sistem əlçatanlığını məhdudlaşdırmalıdır.
FAQ2
What type of access does an attacker need to exploit CVE-2026-11835?
CVE-2026-11835 is a vulnerability that can be exploited by a local attacker, meaning the attacker requires physical or local access to the system.
What measures should be taken to mitigate the impact of CVE-2026-11835?
System owners must update Caliptra Core ROM to the latest version and restrict physical/system access.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.