Low severity3.3NVD Advisory· Published Jul 6, 2026· Updated Jul 7, 2026
CVE-2026-41434
CVE-2026-41434
Description
OP-TEE is a Trusted Execution Environment (TEE) designed as companion to a non-secure Linux kernel running on Arm; Cortex-A cores using the TrustZone technology. Starting in version 3.10.0 and prior to version 4.11.0, an unbounded recursion can crash the PKCS#11 TA. Version 4.11.0 contains a patch. No known workarounds are available.
Affected products
4Patches
Vulnerability mechanics
References
1- github.com/OP-TEE/optee_os/security/advisories/GHSA-wh38-23ff-grffnvdPatchVendor Advisory
News mentions
1- OP-TEE: Five TEE Vulnerabilities Disclosed Together, Affecting Crypto and StabilityVypr Intelligence · Jul 8, 2026