Out-of-bounds read in Core Privileged Access Manager (BoKS) - CVE-2026-79896
Published: October 6, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to an out-of-bounds read in the custom TLS ClientHello parser used by boks_portmux when processing a malformed TLS ClientHello. A remote attacker can submit a malformed ClientHello to cause a denial of service.
Repeated requests can sustain the service interruption.