A vulnerability, which was classified as critical, has been found in ZephyrProject Zephyr up to 4.4.1. The affected element is the function
z_impl_updatehub_probe of the file subsys/mgmt/updatehub/updatehub.c of the component Probe Handler. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2026-11810. It is possible to initiate the attack remotely. There is no exploit available.
It is advisable to upgrade the affected component.