[Midnightbsd-security] MidnightBSD 4.0.7 RELEASE

Lucas Holt luke at foolishgames.com
Sat Aug 1 14:07:58 EDT 2026


MidnightBSD 4.0.7 RELEASE is uploading right now.  It contains a number 
of security updates and is recommended for all users.

  * libarchive 3.8.8 (CVE-2026-14164
    <https://github.com/advisories/GHSA-xq96-f7x8-gfx3>)
  * tzdata 2026c
  * llvm:CVE-2026-13574
    <https://github.com/advisories/GHSA-pf97-7r98-qpj7>gc.relocate
    malformed index diagnostic crash
  * ldns 1.9.2:CVE-2026-10846
    <https://github.com/advisories/GHSA-x77r-8q36-8529>off-path DNS
    response spoofing in the stub resolver and drill; responses are now
    matched to the query by source address/port, transaction ID and question
  * openssl:CVE-2026-45447
    <https://github.com/advisories/GHSA-f684-cpcq-j565>PKCS#7/S/MIME
    verification use-after-free fix.
  * openssl:CVE-2026-34180
    <https://github.com/advisories/GHSA-3c8f-qq7h-7qv6>ASN.1 decoder
    large primitive length over-read fix.
  * openssl:CVE-2026-7383
    <https://github.com/advisories/GHSA-w853-v86g-gv7j>ASN1_mbstring_ncopy()
    Unicode output size overflow fix.
  * openssl:CVE-2026-28388
    <https://github.com/advisories/GHSA-rpg5-467j-c25q>delta CRL missing
    CRL Number NULL pointer dereference fix.
  * llvm:CVE-2026-13574
    <https://github.com/advisories/GHSA-pf97-7r98-qpj7>gc.relocate
    malformed index diagnostic crash fix.
  * vm: CVE-2026-49418 device pager page list use-after-free fix.
  * iconv: CVE-2026-58081, CVE-2026-58082 buffer overflows in the
    HZ,UTF-7, VIQR, ZW and ISO-2022 iconv(3) encoding modules.
  * audit: CVE-2026-49426 incorrect audit records for
    ptrace(PT_SC_REMOTE) syscall requests
  * posixshm: CVE-2026-49427, CVE-2026-49428 use-after-free in POSIX
    largepage shared memory objects (sendfile SF_NOCACHE and O_TRUNC paths).
  * tcp: CVE-2026-49422 use-after-free in the RACK TCP stack
    setsockopt(2) handler (tcp_rack.ko).
  * unlinkat: CVE-2026-49421 unlinkat(2)/funlinkat(2) silently ignored
    the AT_RESOLVE_BENEATH path-containment flag.
  * libalias: CVE-2026-49420 buffer overflow in the RTSP handler
    (alias_smedia).
  * zfs: CVE-2026-49429, CVE-2026-49430, CVE-2026-49431 OpenZFS heap
    overflow (USERSPACE_MANY), receive-path memory corruption (RECV_NEW
    heal) and improper SET_PROP privilege check.
  * execve: CVE-2026-49415 local privilege escalation via a procfs
    debugging permission race.


-- 
Lucas Holt
Luke at FoolishGames.com
________________________________________________________
MidnightBSD.org (Free OS)
JustJournal.com (Free blogging)


More information about the Midnightbsd-security mailing list