A vulnerability identified as very critical has been detected in Zephyrproject Zephyr up to 4.4.x. This affects the function z_vrfy_log_filter_set of the file subsys/logging/log_mgmt.c of the component Logging Runtime Filtering. This manipulation of the argument src_id causes out-of-bounds read.

The identification of this vulnerability is CVE-2026-10682. The attack can only be executed locally. There is no exploit available.

You should upgrade the affected component.