FreeBSD是FreeBSD基金会开源的一套类Unix操作系统。 FreeBSD存在权限许可和访问控制问题漏洞,该漏洞源于在execve(2)系统调用中,辅助向量构建时P_SUGID进程标志尚未设置,导致AT_SECURE错误地为set-user-ID和set-group-ID可执行文件设置为零,从而允许非特权本地用户通过LD_PRELOAD向这些可执行文件注入共享库,获取该二进制文件的权限。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-49416 | Integer overflow in vt(4) CONS_HISTORY ioctl | |
| CVE-2026-49414 | ASLR bypass for setuid executables via procctl(2) | |
| CVE-2026-49412 | Use-after-free bug in the IPV6_MSFILTER socket option handler | |
| CVE-2026-45259 | sigqueue(2) missing capability mode restriction | |
| CVE-2026-45258 | Multiple vulnerabilities in the sound(4) mmap path | |
| CVE-2026-49417 | Multiple vulnerabilities in the sound(4) mmap path |
No comments yet