CVE-2026-40003: USB-based arbitrary memory write vulnerability in ZTE ZX297520V3 soc BootROM
ZTE ZX297520V3 BootROM contains a vulnerability that allows arbitrary memory writes via USB. Attackers can exploit the lack of target address validation in the USB download mode to write data to any location in BootROM runtime memory, thereby overwriting the stack, hijacking the execution flow, bypassing the Secure Boot signature verification mechanism, and achieving unauthorized code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-40003?
CVE-2026-40003 is classified as a high-severity vulnerability due to its potential to allow arbitrary memory writes.
How do I fix CVE-2026-40003?
To fix CVE-2026-40003, update the ZTE ZX297520V3 BootROM to the latest version provided by ZTE.
What types of attacks can exploit CVE-2026-40003?
CVE-2026-40003 can be exploited by attackers to execute arbitrary code or corrupt data by writing to any location in the BootROM.
Which devices are affected by CVE-2026-40003?
CVE-2026-40003 affects devices using the ZTE ZX297520V3 BootROM.
How can I determine if my system is vulnerable to CVE-2026-40003?
To determine if your system is vulnerable to CVE-2026-40003, check if it is running an affected version of the ZTE ZX297520V3 BootROM.