Impact
The kernel’s SecureContext_FreeContext routine lacks a privilege check, allowing a local user to trigger a use‑after‑free condition during secure‑world memory cleanup via the SVC handler. This flaw can lead to arbitrary code execution or a denial of service within the secure partition, compromising confidentiality, integrity, or availability of protected data.
Affected Systems
FreeRTOS applications built with FreeRTOS‑Kernel versions prior to 11.3.1, including all derivatives that integrate the kernel directly.
Risk and Exploitability
The CVSS score of 8.3 indicates a high severity, and the fault is exploitable by users who can invoke the SVC handler for context deallocation. No public exploitation reports exist and the vulnerability is not listed in the CISA KEV catalog, but the EPSS score is unavailable, so the exploitation probability is unknown. Nonetheless, the local nature of the attack vector means that any device running an affected kernel constitutes a direct risk.
OpenCVE Enrichment