Memory Access Vulnerability in FreeBSD Kernel Components
CVE-2026-49427
Currently unrated
What is CVE-2026-49427?
This vulnerability in the FreeBSD kernel affects largepage shared memory objects, where pages are not wired explicitly. When utilizing the sendfile() function with the SF_NOCACHE flag, the underlying pages are freed post-transmission despite ongoing references from existing mappings. This flaw allows unprivileged local users to exploit the system, granting them the ability to access freed kernel memory, which may lead to unauthorized privilege escalation.
Affected Version(s)
FreeBSD 15.1-RELEASE
FreeBSD 15.0-RELEASE
FreeBSD 14.4-RELEASE
