PT-2026-34241 · Freebsd · Freebsd

Published

2026-04-22

·

Updated

2026-04-22

·

CVE-2026-5398

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
The implementation of TIOCNOTTY failed to clear a back-pointer from the structure representing the controlling terminal to the calling process' session. If the invoking process then exits, the terminal structure may end up containing a pointer to freed memory.
A malicious process can abuse the dangling pointer to grant itself root privileges.

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2026-5398

Affected Products

Freebsd