Skip to content
EXPLOIT
.CC
CVEs
Search
About
synced 43 MIN AGO
T-43M
01
Record
STATE: —
02
Description
SRC: CNA
03
Metadata
SCHEMA: CVE JSON 5
04
Affected products
PAIRS: —
05
References
REFS: —
01
Record
STATE: PUBLISHED
CVE-2026-77234
Improper input validation in FreeRTOS-Kernel timer command handling
Critical
PUBLISHED
CNA: AMZN
Base score
9.3
CVSS v4.0
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
View raw JSON
CVE Program record
02
Description
CNA: AMZN
Improper input validation in FreeRTOS-Kernel timer command handling
03
Metadata
SCHEMA: 5.2
Published
2026-08-21 17:40Z
7 HR AGO
Last updated
2026-08-21 19:41Z
5 HR AGO
Reserved
2026-08-20
Assigning CNA
AMZN
Record state
PUBLISHED
Severity
Critical (CVSS 9.3)
CVSS vector
CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H
Weaknesses
CWE-863
Incorrect Authorization
Class
SSVC decision
No CISA-ADP assessment
Data version
5.2
Document digest
86493fe6f040d482c9cb22bca366ea5e7d54cc70e229f1fd4b10b1a32e347dfa
04
Affected products
PAIRS: 1
Vendor
Product
Versions
Platforms
FreeRTOS
FreeRTOS-Kernel
7.0.0 to 11.3.0
—
05
References
REFS: 3
github.com
https://github.com/FreeRTOS/FreeRTOS-Kernel/releases/tag/V11.3.1
patch
aws.amazon.com
https://aws.amazon.com/security/security-bulletins/2026-086-aws/
vendor-advisory
github.com
https://github.com/FreeRTOS/FreeRTOS-Kernel/security/advisories/GHSA-w3vr-pr75-5hc6
third-party-advisory