CVE-2026-13466: Unit Confusion in VAB Authentication
Published Sep 24, 2026
·Updated
Incorrect calculation of buffer size vulnerability in Altera Trusted Firmware on HPS allows Overflow Buffers.
This issue affects Trusted Firmware: through socfpgav2.14.0.
Affected Software
1 affected component
Altera Trusted Firmware<=socfpga_v2.14.0
Event History
Sep 24, 2026
CVE Published
via MITRE·02:51 PM
Data Sourced
via MITRE·02:51 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What level of access is required to exploit this issue?
The vulnerability has a local attack vector and requires high privileges. No user interaction is required.
2
Which releases are affected?
Altera Trusted Firmware is affected through socfpga_v2.14.0.
3
What security impact is indicated by the severity vector?
The vector indicates low confidentiality impact and high integrity and availability impact. It also indicates scope change.