Endpoint Discriminator Options Validation Flaw in FreeBSD PPP Implementation
CVE-2026-58096
Currently unrated
What is CVE-2026-58096?
A vulnerability exists in the FreeBSD PPP implementation due to the LcpDecodeConfig() function's failure to properly validate the length of received endpoint discriminator options against the requirements set forth in RFC 1717. This flaw allows a malicious PPP peer to send undersized options, which can lead to an out-of-bounds write scenario. Exploitation of this vulnerability can potentially result in the crash of the PPP daemon or lead to arbitrary code execution with root privileges, posing a serious security risk.
Affected Version(s)
FreeBSD 15.1-RELEASE
FreeBSD 15.0-RELEASE
FreeBSD 14.4-RELEASE
