#freebsd — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #freebsd, aggregated by home.social.
-
https://security.freebsd.org/advisories/FreeBSD-SA-26:60.ppp.asc
Décio Brandão is amongst the credits, however their name is misrepresented as Décio Brandão
Noted on Kubuntu 26.04 in Microsoft Edge 152.0.4191.41, Firefox 154.0.1, NetSurf 3.11. No problem in lynx 2.9.2-2. I can't test some of the other installed browsers.
https://bokut.in/freebsd-patch-level-table/advisories/FreeBSD-SA-26:60.ppp.asc.html is bugged in lynx.
-
@intro 🐧freebsd: Mehr 🇩🇰 wagen 💪 Ah, I see. I mixed up OpenBSD and FreeBSD 🙄
I can hear my former colleague @✰ 𝔽𝕣𝕖𝕕 ✰ roll his eyes at me now 😄
Sorry, I don't do it on purpose... 🤷
I always do the same with Star Wars and Star Trek.
Although that is on purpose, if I can help it 😇
#ZFS #OpenBSD #FreeBSD -
The Timer That Fired Too Soon — FreeBSD 15.1 Local Privilege Escalation · Blimpers
https://blimpers.dev/research/freebsd15-kqueue-cof-uaf/
Credit: Hazley Samsudin, GovTech CSG
-
A group of interesting people with the chilly interest in AI and cybersecurity – doing CTFs in our free time, and some vulnerability research on the side.
#AI #cybersecurity #vulnerability #FreeBSD #Oracle #VirtualBox
-
I'd never expect to have that much fun configging a terminal. I mean, aside from a new fastfetch config that is 🤣 Both on FreeBSD, in my Hyprland config.
#freebsd #rioterminal
https://rioterm.com/ -
-
Looks like this FreeBSD vuln is going to keep on giving for a while.
FreeBSD-SA-26:57.unix
[...]
III. Impact
An unprivileged local user can exploit this use-after-free to escalate privileges.IV. Workaround
No workaround is available. -
FreeBSD 15.0 // HWPMC // SA-26:56
Date: August 25, 2026
Name: FreeBSD-SA-26:56.hwpmc
Description: hwpmc fails to detach PMCs during exec credential transitions CVE-2026-58089
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:56.hwpmc.asc -
FreeBSD 15.0 // UNIX // SA-26:57
Date: August 25, 2026
Name: FreeBSD-SA-26:57.unix
Description: Use-after-free in unix SOCK_STREAM message handling CVE-2026-58090
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:57.unix.asc -
FreeBSD 15.0 // SOUND // SA-26:58
Date: August 25, 2026
Name: FreeBSD-SA-26:58.sound
Description: Kernel use-after-free via the SNDCTL_DSP_SYNCSTART ioctl CVE-2026-58091
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:58.sound.asc -
FreeBSD 15.0 // MAC_DO // SA-26:59
Date: August 25, 2026
Name: FreeBSD-SA-26:59.mac_do
Description: Unauthorized credential switching CVE-2026-58092
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:59.mac_do.asc -
FreeBSD 15.0 // TTY // SA-26:62
Date: August 25, 2026
Name: FreeBSD-SA-26:62.tty
Description: Kernel use-after-free via tty ioctls CVE-2026-58093
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:62.tty.asc -
FreeBSD 15.0 // PPP // SA-26:60
Date: August 25, 2026
Name: FreeBSD-SA-26:60.ppp
Description: Multiple vulnerabilities in ppp(8) CVE-2026-58095, CVE-2026-58096, CVE-2026-58097
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:60.ppp.asc -
FreeBSD 15.0 // OPENSSL // SA-26:61
Date: August 25, 2026
Name: FreeBSD-SA-26:61.openssl
Description: Multiple vulnerabilities in OpenSSL CVE-2026-14457, CVE-2026-18798, CVE-2026-54874,
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:61.openssl.asc -
FreeBSD 14.4 // HWPMC // SA-26:56
Date: August 25, 2026
Name: FreeBSD-SA-26:56.hwpmc
Description: hwpmc fails to detach PMCs during exec credential transitions CVE-2026-58089
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:56.hwpmc.asc -
FreeBSD 15.0 // POSIXSHM // SA-26:63
Date: August 25, 2026
Name: FreeBSD-SA-26:63.posixshm
Description: TOCTOU race in POSIX shared memory large page configuration CVE-2026-58094
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:63.posixshm.asc -
FreeBSD 14.4 // SOUND // SA-26:58
Date: August 25, 2026
Name: FreeBSD-SA-26:58.sound
Description: Kernel use-after-free via the SNDCTL_DSP_SYNCSTART ioctl CVE-2026-58091
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:58.sound.asc -
FreeBSD 14.4 // PPP // SA-26:60
Date: August 25, 2026
Name: FreeBSD-SA-26:60.ppp
Description: Multiple vulnerabilities in ppp(8) CVE-2026-58095, CVE-2026-58096, CVE-2026-58097
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:60.ppp.asc -
FreeBSD 14.4 // OPENSSL // SA-26:61
Date: August 25, 2026
Name: FreeBSD-SA-26:61.openssl
Description: Multiple vulnerabilities in OpenSSL CVE-2026-14457, CVE-2026-18798, CVE-2026-54874,
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:61.openssl.asc -
FreeBSD 14.4 // TTY // SA-26:62
Date: August 25, 2026
Name: FreeBSD-SA-26:62.tty
Description: Kernel use-after-free via tty ioctls CVE-2026-58093
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:62.tty.asc -
FreeBSD 14.4 // POSIXSHM // SA-26:63
Date: August 25, 2026
Name: FreeBSD-SA-26:63.posixshm
Description: TOCTOU race in POSIX shared memory large page configuration CVE-2026-58094
Link: https://www.freebsd.org/security/advisories/FreeBSD-SA-26:63.posixshm.asc -
However, is not like deal with the multiple repositories layer you have in the linux distros, where each go to place stuff entirely somewhere else, or you have more than two to get what you need.
One of my biggest frustration on Linux actually.I have to see how Pkgsrc in NetBSD handles these cases in the next future. I had not yet chance to try it, and see what are the pros and con with it.
-
Recompile the software from the port system feels straightforward as much using the binaries on FreeBSD.
When you mass upgrade the packages, PKG could try to put back the standard binary ones over your own compiled ones, in that case better your pin it.
It is worth for those two programs you need with a certain set up.These things are easier to deal with, at least, but for the average Linux user, thought, it could be some source of irritation.