A vulnerability was found in Zephyr Project Zephyr up to 4.4.1. It has been classified as very critical. The impacted element is the function z_queue_node_peek of the file kernel/queue.c of the component Queue Helper. The manipulation leads to use after free.

This vulnerability is traded as CVE-2026-11742. An attack has to be approached locally. There is no exploit available.

Upgrading the affected component is recommended.