A vulnerability has been found in Zephyr Project Zephyr up to 4.4.1 and classified as critical. This issue affects the function k_mutex_lock of the file subsys/net/lib/tls_credentials/tls_credentials_trusted.c of the component PSA Protected Storage Credential Backend. This manipulation causes use of uninitialized variable.

The identification of this vulnerability is CVE-2026-12233. It is possible to initiate the attack remotely. There is no exploit available.

The affected component should be upgraded.