CVE-2026-0150
Published Jun 16, 2026
Last updated a month ago
AI description
Automated description summarized from trusted sources.
CVE-2026-0150 is a vulnerability found within the `ExecuteGraph` command handler of the EdgeTPU firmware. This flaw is characterized as a possible out-of-bounds write, which stems from an integer overflow. Exploitation of this vulnerability could lead to a local escalation of privilege, requiring root privileges. User interaction is not necessary for this vulnerability to be exploited. The vulnerability was discovered by researchers at CertiK and acknowledged by Google, being included in their June 2026 Security Bulletin.
- Description
- In ExecuteGraph command handler of EdgeTPU firmware, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with root privileges needed. User interaction is not needed for exploitation.
- Source
- dsap-vuln-management@google.com
- NVD status
- Awaiting Analysis
Hype score is a measure of social media activity compared against trending CVEs from the past 12 months. Max score 100.
- Hype score
5