Endpoint Discriminator Options Validation Flaw in FreeBSD PPP Implementation
CVE-2026-58096

Currently unrated

Key Information:

Vendor

FreeBSD

Status
Vendor
CVE Published:
26 August 2026

What is CVE-2026-58096?

A vulnerability exists in the FreeBSD PPP implementation due to the LcpDecodeConfig() function's failure to properly validate the length of received endpoint discriminator options against the requirements set forth in RFC 1717. This flaw allows a malicious PPP peer to send undersized options, which can lead to an out-of-bounds write scenario. Exploitation of this vulnerability can potentially result in the crash of the PPP daemon or lead to arbitrary code execution with root privileges, posing a serious security risk.

Affected Version(s)

FreeBSD 15.1-RELEASE

FreeBSD 15.0-RELEASE

FreeBSD 14.4-RELEASE

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Robert Morris
Décio Brandão (0xDBJ)
Joshua Rogers
Reo Shiseki
.