๐Ÿ” CVE Alert

CVE-2026-49414

UNKNOWN 0.0

ASLR bypass for setuid executables via procctl(2)

CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th

The ELF image activator cleared per-process ASLR preference flags for setuid binaries after the code that computes the PIE base address, rather than before. As a result, a user-requested ASLR disable was still in effect at the point where the base address was chosen. An unprivileged local user can disable ASLR for a setuid PIE binary by calling procctl(2) before execve(2). This makes exploitation of any separate memory corruption vulnerability in that binary significantly easier.

CWE CWE-179
Vendor freebsd
Product freebsd
Published Jun 27, 2026
Stay Ahead of the Next One

Get instant alerts for freebsd freebsd

Be the first to know when new unknown vulnerabilities affecting freebsd freebsd are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

Affected Versions

FreeBSD / FreeBSD
15.0-RELEASE < p10 14.4-RELEASE < p6 14.3-RELEASE < p15

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
security.freebsd.org: https://security.freebsd.org/advisories/FreeBSD-SA-26:32.elf.asc

Credits

Synacktiv