Use-after-free in FreeBSD - CVE-2026-58091
Published: August 26, 2026
Vulnerability details
The vulnerability allows a local user to escalate privileges.
The vulnerability exists due to use-after-free in the SNDCTL_DSP_SYNCSTART ioctl implementation when locking channels in a sync group. A local user can trigger the ioctl on a system with multiple audio devices to escalate privileges.
Systems with zero or one sound devices are unaffected.