All findings

CVE-2026-71967 + 3 more high

Argus discloses four OP-TEE and OpenBSD CVEs

Argus' public Proof of Possession tracker discloses three OP-TEE memory-safety CVEs and an OpenBSD wireless countermeasure flaw.

Bug class
Heap underwrite, use-after-free, secure-world denial of service, and wireless countermeasure logic failure
Affected codebase
OP-TEE OS and OpenBSD kernel
Credited system
Argus / ByteRay
Disclosed
August 6, 2026
Attribution
Self-reported attribution
Severity
high
Source status: Argus publishes full technical descriptions for all four identifiers. Public CVE records directly credit Argus/ByteRay on the three OP-TEE CVEs. CVE-2026-56101 had a public Argus disclosure but no retrievable CVE.org record at the August 19 audit, so its acceptance trail should be revisited.

Summary

The OP-TEE set covers an RSA NOPAD heap underwrite, a trusted-application loader use-after-free, and a secure-world panic in the Widevine PTA. Argus also publishes CVE-2026-56101 for an inverted TKIP MIC-failure countermeasure test in OpenBSD.

Argus lists two affected OP-TEE paths for CVE-2026-71969. They are variants of one assigned vulnerability and count once.

Evidence boundary

The AI attribution is self-reported. The OP-TEE records have a direct CNA credit. CVE-2026-56101 remains visible because its technical disclosure is public, but its CVE publication status is explicitly weaker and should be rechecked in the next audit.


References


Catalogued in the Bugflation public ledger. Disagree with the attribution or severity label? Email the desk.