FreeBSD是FreeBSD基金会开源的一款类Unix操作系统。 FreeBSD 15.1-RELEASE p3之前版本、FreeBSD 15.0-RELEASE p13之前版本和FreeBSD 14.4-RELEASE p9之前版本存在安全漏洞,该漏洞源于LcpDecodeConfig()函数未验证接收的端点鉴别器选项长度是否符合RFC 1717要求,导致越界写入,恶意PPP对端可利用该漏洞导致ppp(8)崩溃或潜在以root权限执行任意代码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-58090 | Use-after-free in unix SOCK_STREAM message handling | |
| CVE-2026-58091 | Kernel use-after-free via the SNDCTL_DSP_SYNCSTART ioctl | |
| CVE-2026-58092 | Unauthorized credential switching | |
| CVE-2026-58089 | hwpmc fails to detach PMCs during exec credential transitions | |
| CVE-2026-58097 | ppp(8): missing length validation in mp_SetEnddisc() | |
| CVE-2026-58095 | ppp(8): incorrect length calculation in mp_Enddisc() | |
| CVE-2026-58093 | Kernel use-after-free via tty ioctls | |
| CVE-2026-58094 | TOCTOU race in POSIX shared memory large page configuration |
No comments yet