FreeBSD 15.0 // TTY // SA-26:10
Date: April 21, 2026
Name: FreeBSD-SA-26:10.tty
Description: Kernel use-after-free bug in the TIOCNOTTY handler CVE-2026-5398
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:10.tty.asc
Inofficial BSD Security Advisories Announce Bot (alpha)
FreeBSD 15.0 // TTY // SA-26:10
Date: April 21, 2026
Name: FreeBSD-SA-26:10.tty
Description: Kernel use-after-free bug in the TIOCNOTTY handler CVE-2026-5398
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:10.tty.asc
OpenBSD 7.8 // SMTPD // ERRATA 026
Date: March 27, 2026
Name: 026_smtpd.patch
Description: In smtpd(8), an LF character in the username or password could stop proc tables, causing a denial of service.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/026_smtpd.patch.sig
OpenBSD 7.8 // RPKI // ERRATA 030
Date: April 14, 2026
Name: 030_rpki.patch
Description: A malicious RPKI Publication Server can cause an incorrect error exit. A malicious RRDP Publication Server can cause a NULL dereference.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/030_rpki.patch.sig
OpenBSD 7.7 // SMTPD // ERRATA 032
Date: March 27, 2026
Name: 032_smtpd.patch
Description: In smtpd(8), an LF character in the username or password could stop proc tables, causing a denial of service.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/032_smtpd.patch.sig
OpenBSD 7.8 // EXPAT // ERRATA 024
Date: March 21, 2026
Name: 024_expat.patch
Description: In libexpat fix denial of service due to NULL dereference and infinite loop. CVE-2026-32776 CVE-2026-32777 CVE-2026-32778
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/024_expat.patch.sig
OpenBSD 7.8 // SACK // ERRATA 025
Date: March 25, 2026
Name: 025_sack.patch
Description: TCP packets with invalid SACK options could crash the kernel.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/025_sack.patch.sig
OpenBSD 7.7 // SACK // ERRATA 031
Date: March 25, 2026
Name: 031_sack.patch
Description: TCP packets with invalid SACK options could crash the kernel.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/031_sack.patch.sig
OpenBSD 7.7 // EXPAT // ERRATA 030
Date: March 21, 2026
Name: 030_expat.patch
Description: In libexpat fix denial of service due to NULL dereference and infinite loop. CVE-2026-32776 CVE-2026-32777 CVE-2026-32778
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/030_expat.patch.sig
OpenBSD 7.8 // IKED // ERRATA 027
Date: April 4, 2026
Name: 027_iked.patch
Description: In iked(8) add stricter checks to avoid out-of-bounds read, NULL pointer dereference, and keep the state machine consistent.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/027_iked.patch.sig
FreeBSD 15.0 // AMD64 // SA-26:11
Date: April 21, 2026
Name: FreeBSD-SA-26:11.amd64
Description: Missing large page handling in pmap_pkru_update_range() CVE-2026-6386
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:11.amd64.asc
FreeBSD 14.4 // EXEC // SA-26:13
Date: April 29, 2026
Name: FreeBSD-SA-26:13.exec
Description: Local privilege escalation via execve() CVE-2026-7270
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:13.exec.asc
FreeBSD 14.4 // TCP // SA-26:06
Date: March 26, 2026
Name: FreeBSD-SA-26:06.tcp
Description: TCP: remotely exploitable DoS vector (mbuf leak) CVE-2026-4247
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:06.tcp.asc
OpenBSD 7.8 // CALENDAR // ERRATA 023
Date: March 19, 2026
Name: 023_calendar.patch
Description: calendar(1) could not send mail due to missing unveil.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/023_calendar.patch.sig
FreeBSD 14.4 // PF // SA-26:14
Date: April 29, 2026
Name: FreeBSD-SA-26:14.pf
Description: pf can overflow the stack parsing crafted SCTP packets CVE-2026-7164
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:14.pf.asc
FreeBSD 14.4 // PF // SA-26:09
Date: March 25, 2026
Name: FreeBSD-SA-26:09.pf
Description: pf silently ignores certain rules CVE-2026-4748
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:09.pf.asc
FreeBSD 14.4 // RPCSEC_GSS // SA-26:08
Date: March 26, 2026
Name: FreeBSD-SA-26:08.rpcsec_gss
Description: Remote code execution via RPCSEC_GSS packet validation CVE-2026-4747
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:08.rpcsec_gss.asc
FreeBSD 14.3 // EXEC // SA-26:13
Date: April 29, 2026
Name: FreeBSD-SA-26:13.exec
Description: Local privilege escalation via execve() CVE-2026-7270
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:13.exec.asc
OpenBSD 7.8 // EXPAT // ERRATA 034
Date: May 8, 2026
Name: 034_expat.patch
Description: libexpat uses more entropy to protect against hash flooding. CVE-2026-41080
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/034_expat.patch.sig
FreeBSD 15.0 // DHCLIENT // SA-26:12
Date: April 29, 2026
Name: FreeBSD-SA-26:12.dhclient
Description: Remote code execution via malicious DHCP options CVE-2026-42511
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:12.dhclient.asc
FreeBSD 15.0 // DHCLIENT // SA-26:15
Date: April 29, 2026
Name: FreeBSD-SA-26:15.dhclient
Description: Remotely triggerable out-of-bounds heap write in dhclient CVE-2026-42512
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:15.dhclient.asc
OpenBSD 7.7 // NFS // ERRATA 041
Date: May 8, 2026
Name: 041_nfs.patch
Description: Due to insufficient checks in NFS server, the kernel could crash.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/041_nfs.patch.sig
OpenBSD 7.8 // PLEDGEPATHS // ERRATA 018
Date: March 4, 2026
Name: 018_pledgepaths.patch
Description: Make the pledge(2) mechanism which permits specific libc paths more strict by removing the "tmppath" promise, avoid normalizing paths
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/018_pledgepaths.patch.sig
FreeBSD 15.0 // PF // SA-26:14
Date: April 29, 2026
Name: FreeBSD-SA-26:14.pf
Description: pf can overflow the stack parsing crafted SCTP packets CVE-2026-7164
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:14.pf.asc
FreeBSD 15.0 // PF // SA-26:09
Date: March 25, 2026
Name: FreeBSD-SA-26:09.pf
Description: pf silently ignores certain rules CVE-2026-4748
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:09.pf.asc
FreeBSD 14.4 // LIBNV // SA-26:17
Date: April 29, 2026
Name: FreeBSD-SA-26:17.libnv
Description: Heap overflow in libnv CVE-2026-35547
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:17.libnv.asc
FreeBSD 14.3 // DHCLIENT // SA-26:15
Date: April 29, 2026
Name: FreeBSD-SA-26:15.dhclient
Description: Remotely triggerable out-of-bounds heap write in dhclient CVE-2026-42512
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:15.dhclient.asc
OpenBSD 7.7 // CALENDAR // ERRATA 029
Date: March 19, 2026
Name: 029_calendar.patch
Description: calendar(1) could not send mail due to missing unveil.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/029_calendar.patch.sig
OpenBSD 7.7 // UNVEIL // ERRATA 025
Date: March 4, 2026
Name: 025_unveil_mount.patch
Description: unveil(2) traversals could misbehave crossing mountpoints.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/025_unveil_mount.patch.sig
FreeBSD 14.4 // DHCLIENT // SA-26:12
Date: April 29, 2026
Name: FreeBSD-SA-26:12.dhclient
Description: Remote code execution via malicious DHCP options CVE-2026-42511
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:12.dhclient.asc
OpenBSD 7.7 // IKED // ERRATA 042
Date: May 8, 2026
Name: 042_iked.patch
Description: In iked(8), address sizes were not checked.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/042_iked.patch.sig
OpenBSD 7.7 // EXPAT // ERRATA 040
Date: May 8, 2026
Name: 040_expat.patch
Description: libexpat uses more entropy to protect against hash flooding. CVE-2026-41080
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/040_expat.patch.sig
OpenBSD 7.7 // IKED // ERRATA 033
Date: April 4, 2026
Name: 033_iked.patch
Description: In iked(8) add stricter checks to avoid out-of-bounds read, NULL pointer dereference, and keep the state machine consistent.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.7/common/033_iked.patch.sig
FreeBSD 14.3 // RPCSEC_GSS // SA-26:08
Date: March 26, 2026
Name: FreeBSD-SA-26:08.rpcsec_gss
Description: Remote code execution via RPCSEC_GSS packet validation CVE-2026-4747
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:08.rpcsec_gss.asc
FreeBSD 14.3 // PF // SA-26:09
Date: March 25, 2026
Name: FreeBSD-SA-26:09.pf
Description: pf silently ignores certain rules CVE-2026-4748
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:09.pf.asc
FreeBSD 14.3 // DHCLIENT // SA-26:12
Date: April 29, 2026
Name: FreeBSD-SA-26:12.dhclient
Description: Remote code execution via malicious DHCP options CVE-2026-42511
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:12.dhclient.asc
FreeBSD 14.3 // PF // SA-26:14
Date: April 29, 2026
Name: FreeBSD-SA-26:14.pf
Description: pf can overflow the stack parsing crafted SCTP packets CVE-2026-7164
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:14.pf.asc
FreeBSD 15.0 // EXEC // SA-26:13
Date: April 29, 2026
Name: FreeBSD-SA-26:13.exec
Description: Local privilege escalation via execve() CVE-2026-7270
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:13.exec.asc
FreeBSD 14.3 // LIBNV // SA-26:16
Date: April 29, 2026
Name: FreeBSD-SA-26:16.libnv
Description: Stack overflow via select() file descriptor set overflow CVE-2026-39457
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:16.libnv.asc
FreeBSD 15.0 // NVMF // SA-26:07
Date: March 26, 2026
Name: FreeBSD-SA-26:07.nvmf
Description: Remote denial of service via null pointer dereference CVE-2026-4652
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:07.nvmf.asc
FreeBSD 14.3 // TCP // SA-26:06
Date: March 26, 2026
Name: FreeBSD-SA-26:06.tcp
Description: TCP: remotely exploitable DoS vector (mbuf leak) CVE-2026-4247
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:06.tcp.asc
FreeBSD 15.0 // LIBNV // SA-26:17
Date: April 29, 2026
Name: FreeBSD-SA-26:17.libnv
Description: Heap overflow in libnv CVE-2026-35547
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:17.libnv.asc
FreeBSD 15.0 // LIBNV // SA-26:16
Date: April 29, 2026
Name: FreeBSD-SA-26:16.libnv
Description: Stack overflow via select() file descriptor set overflow CVE-2026-39457
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:16.libnv.asc
FreeBSD 15.0 // TCP // SA-26:06
Date: March 26, 2026
Name: FreeBSD-SA-26:06.tcp
Description: TCP: remotely exploitable DoS vector (mbuf leak) CVE-2026-4247
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:06.tcp.asc
FreeBSD 15.0 // RPCSEC_GSS // SA-26:08
Date: March 26, 2026
Name: FreeBSD-SA-26:08.rpcsec_gss
Description: Remote code execution via RPCSEC_GSS packet validation CVE-2026-4747
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:08.rpcsec_gss.asc
OpenBSD 7.8 // NFS // ERRATA 035
Date: May 8, 2026
Name: 035_nfs.patch
Description: Due to insufficient checks in NFS server, the kernel could crash.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/035_nfs.patch.sig
FreeBSD 14.4 // LIBNV // SA-26:16
Date: April 29, 2026
Name: FreeBSD-SA-26:16.libnv
Description: Stack overflow via select() file descriptor set overflow CVE-2026-39457
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:16.libnv.asc
FreeBSD 14.3 // LIBNV // SA-26:17
Date: April 29, 2026
Name: FreeBSD-SA-26:17.libnv
Description: Heap overflow in libnv CVE-2026-35547
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:17.libnv.asc
OpenBSD 7.8 // UNVEIL // ERRATA 019
Date: March 4, 2026
Name: 019_unveil_mount.patch
Description: unveil(2) traversals could misbehave crossing mountpoints.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/019_unveil_mount.patch.sig
OpenBSD 7.8 // IKED // ERRATA 036
Date: May 8, 2026
Name: 036_iked.patch
Description: In iked(8), address sizes were not checked.
Link: https://cdn.openbsd.org/pub/OpenBSD/patches/7.8/common/036_iked.patch.sig
FreeBSD 14.4 // DHCLIENT // SA-26:15
Date: April 29, 2026
Name: FreeBSD-SA-26:15.dhclient
Description: Remotely triggerable out-of-bounds heap write in dhclient CVE-2026-42512
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:15.dhclient.asc