A vulnerability was found in ZephyrProject Zephyr up to 4.4.1. It has been rated as problematic. Affected is the function prepare_fds of the file subsys/mgmt/updatehub/updatehub.c of the component UpdateHub Management Subsystem. The manipulation leads to memory corruption.

This vulnerability is uniquely identified as CVE-2026-11812. Local access is required to approach this attack. No exploit exists.

To fix this issue, it is recommended to deploy a patch.