Skip to main content
Disclosures

TrustedFirmware · optee_os / core

RSASSA PKCS#1 v1.5 Padding Size Underflow

7.5high
SecMateSECMATE-2026-0017
VendorTrustedFirmware
Productoptee_os / core
ClassificationDuplicate
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Timeline
Reported
Mar 5, 2026
Acknowledged
Mar 20, 2026
Fixed
Apr 24, 2026
Published
Apr 24, 2026
Summary

OP-TEE versions 3.8.0 through 4.10 contain an integer underflow in the accelerated RSASSA PKCS#1 v1.5 encoding path. On platforms registering RSA acceleration, a sufficiently small modulus can underflow the calculated padding length and cause an oversized write across secure-world heap memory, crashing OP-TEE. Version 4.11 contains the patch.

What's hidden in yours?

Find out