ogs_sbi_client_add in the library /lib/sbi/client.c of the component NRF. The manipulation of the argument client_pool leads to denial of service.
This vulnerability is traded as CVE-2026-8731. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.
Intelligence View
SOCIAL SHARE CARD GENERATOR