[Midnightbsd-security] MidnightBSD 4.0.7 RELEASE
Lucas Holt
luke at foolishgames.com
Sat Aug 1 14:07:58 EDT 2026
MidnightBSD 4.0.7 RELEASE is uploading right now. It contains a number
of security updates and is recommended for all users.
* libarchive 3.8.8 (CVE-2026-14164
<https://github.com/advisories/GHSA-xq96-f7x8-gfx3>)
* tzdata 2026c
* llvm:CVE-2026-13574
<https://github.com/advisories/GHSA-pf97-7r98-qpj7>gc.relocate
malformed index diagnostic crash
* ldns 1.9.2:CVE-2026-10846
<https://github.com/advisories/GHSA-x77r-8q36-8529>off-path DNS
response spoofing in the stub resolver and drill; responses are now
matched to the query by source address/port, transaction ID and question
* openssl:CVE-2026-45447
<https://github.com/advisories/GHSA-f684-cpcq-j565>PKCS#7/S/MIME
verification use-after-free fix.
* openssl:CVE-2026-34180
<https://github.com/advisories/GHSA-3c8f-qq7h-7qv6>ASN.1 decoder
large primitive length over-read fix.
* openssl:CVE-2026-7383
<https://github.com/advisories/GHSA-w853-v86g-gv7j>ASN1_mbstring_ncopy()
Unicode output size overflow fix.
* openssl:CVE-2026-28388
<https://github.com/advisories/GHSA-rpg5-467j-c25q>delta CRL missing
CRL Number NULL pointer dereference fix.
* llvm:CVE-2026-13574
<https://github.com/advisories/GHSA-pf97-7r98-qpj7>gc.relocate
malformed index diagnostic crash fix.
* vm: CVE-2026-49418 device pager page list use-after-free fix.
* iconv: CVE-2026-58081, CVE-2026-58082 buffer overflows in the
HZ,UTF-7, VIQR, ZW and ISO-2022 iconv(3) encoding modules.
* audit: CVE-2026-49426 incorrect audit records for
ptrace(PT_SC_REMOTE) syscall requests
* posixshm: CVE-2026-49427, CVE-2026-49428 use-after-free in POSIX
largepage shared memory objects (sendfile SF_NOCACHE and O_TRUNC paths).
* tcp: CVE-2026-49422 use-after-free in the RACK TCP stack
setsockopt(2) handler (tcp_rack.ko).
* unlinkat: CVE-2026-49421 unlinkat(2)/funlinkat(2) silently ignored
the AT_RESOLVE_BENEATH path-containment flag.
* libalias: CVE-2026-49420 buffer overflow in the RTSP handler
(alias_smedia).
* zfs: CVE-2026-49429, CVE-2026-49430, CVE-2026-49431 OpenZFS heap
overflow (USERSPACE_MANY), receive-path memory corruption (RECV_NEW
heal) and improper SET_PROP privilege check.
* execve: CVE-2026-49415 local privilege escalation via a procfs
debugging permission race.
--
Lucas Holt
Luke at FoolishGames.com
________________________________________________________
MidnightBSD.org (Free OS)
JustJournal.com (Free blogging)
More information about the Midnightbsd-security
mailing list