important · Firmware — EL3
A compromised Altera SoCFPGA normal world can cross into EL3-protected physical memory.
Affects
Altera Trusted Firmware for ARM Hard Processor System SoCFPGA platforms, providing the BL31 EL3 secure monitor beneath an embedded operating system.
High-privilege normal-world code can pass attacker-selected addresses and sizes to insufficiently validated SiP handlers; separate VAB and HKDF paths expose EL3 memory-corruption conditions.
Detail and 9 sources
The records do not establish controlled EL3 execution, key extraction or persistence.
Sources
Researchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58004.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58005.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58006.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58007.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/58xxx/CVE-2026-58008.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/13xxx/CVE-2026-13465.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/13xxx/CVE-2026-13466.jsonResearchhttps://raw.githubusercontent.com/CVEProject/cvelistV5/main/cves/2026/13xxx/CVE-2026-13467.jsonCode / PoChttps://github.com/altera-fpga/arm-trusted-firmware