CVE-2026-21093: Buffer Overflow
Published Sep 9, 2026
·Updated
Stack-based buffer overflow in PROCA trustlet prior to SMR Sep-2026 Release 1 allows local privileged attackers to write out-of-bounds memory.
Affected Software
1 affected component
PROCA trustlet<SMR Sep-2026 Release 1
Event History
Sep 9, 2026
CVE Published
via MITRE·04:47 AM
Data Sourced
via MITRE·04:47 AM
DescriptionWeakness
Frequently Asked Questions
1
Who can exploit this issue?
Exploitation requires local privileged attacker access. The available information does not indicate that an unprivileged local user or remote attacker can trigger it.
2
What is the potential impact of successful exploitation?
A local privileged attacker may write outside the bounds of stack-based memory in the PROCA trustlet. The provided information does not specify resulting code execution, data disclosure, or denial-of-service outcomes.
3
Which update addresses the issue?
The issue affects the PROCA trustlet prior to SMR Sep-2026 Release 1. Updating to that release or a later applicable security maintenance release addresses the stated affected range.