VORANT. Threat Intelligence Sign in Get the full feed

FreeBSD Patches Confidentiality Flaw

medium vulnerability technology

A vulnerability in FreeBSD 14.3, 14.4, and 15.0 could let an attacker access confidential data; patches are available.

The French national cybersecurity agency (CERT-FR) has published an advisory regarding a vulnerability in FreeBSD affecting versions 14.3 prior to 14.3-RELEASE-p16, 14.4 prior to 14.4-RELEASE-p7, and 15.0 prior to 15.0-RELEASE-p11. The flaw, tracked as CVE-2026-49424, allows an attacker to compromise the confidentiality of data on affected systems.

FreeBSD has released security advisory FreeBSD-SA-26:47 addressing the issue, and administrators are advised to apply the vendor-provided patches referenced in the bulletin. No indication of active exploitation is provided in the advisory.

Mentioned in this report

Vulnerabilities CVE-2026-49424

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-0830

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free