Security Advisory

CVE-2026-0123

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2026-03-10 20:46:52
Last updated 2026-03-11 03:57:19
Assigner Google_Devices
State PUBLISHED

Description

In EfwApTransport::ProcessRxRing of efw_ap_transport.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.