← Back

CVE-2026-5398

nvd nist
Published: Apr 22, 2026Modified: Jun 17, 2026

JSON object

Loading...
8.4
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.5 / Impact: 5.9
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0 (Secondary)

Description

The implementation of TIOCNOTTY failed to clear a back-pointer from the structure representing the controlling terminal to the calling process' session. If the invoking process then exits, the terminal structure may end up containing a pointer to freed memory. A malicious process can abuse the dangling pointer to grant itself root privileges.

Affected (33)

Products: Freebsd: Freebsd
1 product
Freebsd
Configuration A
33 vulnerable
Vulnerable SoftwareAffected Versions
Freebsd
Version 13.5
Version 13.5 beta3
Version 13.5 p10
Version 13.5 p11
Version 13.5 p1
Version 13.5 p2
Version 13.5 p3
Version 13.5 p4
Version 13.5 p5
Version 13.5 p6
Version 13.5 p7
Version 13.5 p8
Version 13.5 p9
Version 14.3
Version 14.3 p10
Version 14.3 p1
Version 14.3 p2
Version 14.3 p3
Version 14.3 p4
Version 14.3 p5
Version 14.3 p6
Version 14.3 p7
Version 14.3 p8
Version 14.3 p9
Version 14.4
Version 14.4 p1
Version 14.4 rc1
Version 15.0
Version 15.0 p1
Version 15.0 p2
Version 15.0 p3
Version 15.0 p4
Version 15.0 p5

References (1)

Timeline

No history available yet.