CVE-2026-45255Patch(freebsd / freebsd)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch freebsd freebsd systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

When bsdinstall or bsdconfig are prompted to scan for nearby Wi-Fi networks, they build up a list of network names and use bsddialog(1) to prompt the user to select a network. This is implemented using a shell script, and the code which handled network names was not careful to prevent expansion by the shell. As a result, a suitably crafted network name can be used to execute commands via a subshell. The problem can be exploited to execute code as root on the system running bsdinstall or bsdconfig. The attacker would need to create an access point with a specially crafted name and be within range of a Wi-Fi scan. Note that bsdinstall and bsdconfig are vulnerable as soon as the user prompts them to scan for nearby networks; they do not need to actually select the malicious network.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-78

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • freebsd

Threat summary

  • Patch or workaround signal is available
  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 2 signals
  • Technical details provided in 2 signals
  • Peaked 1d ago at 1 mentions (2026-05-22); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
freebsd

3 versions affected across 1 product

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-05-22: 1Mentions · 2026-05-25: 1Patch / Workaround · 2026-05-22: 1Patch / Workaround · 2026-05-25: 1Technical Details · 2026-05-22: 1Technical Details · 2026-05-25: 105-2205-25
Signal classification1 categories
Patch
2100.0%
Referenced assets1 URL
Full discourse2 posts
  • Gray Hats@the_yellow_fall
    Patch

    The FreeBSD Project fixes seven vulnerabilities, including a zero-interaction Wi-Fi shell expansion RCE (CVE-2026-45255) and severe kernel leaks. #FreeBSD #VulnerabilityAlert #SysAdmin #KernelExploit #WiFiRCE #InfoSec #CyberSecurity #OpenSourceSecurity https://securityonline.info/freebsd-core-vulnerabilities-wifi-rce-kernel-privilege-escalation/ https://t.co/TRWIUHlPn4

    Post summary

    FreeBSD releases patches for seven vulnerabilities, including a zero‑interaction Wi‑Fi RCE (CVE‑2026‑45255) and serious kernel leaks.

    00082608
    12.5K followersView on X
  • DFIR Lab@DFIR_Lab
    Patch

    🚨 HIGH SEVERITY: CVE-2026-45255 (CVSS 7.5) FreeBSD bsdinstall/bsdconfig vulnerable to command injection via malicious Wi-Fi network names. Attacker can execute code as root during network scan—no connection required. Patch immediately. #CVE #Vulnerability #PatchNow https://t.co/0eBpmIBZ5u

    Post summary

    A high‑severity command injection flaw (CVE‑2026‑45255) in FreeBSD’s bsdinstall/bsdconfig permits root code execution during network scans, and an urgent patch has been issued.

    0000060
    30 followersView on X
CPE platform detail29 entries

29 of 29 entries

PartVendorProductVersionTarget SWTarget HW
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.3--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd14.4--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--
OSfreebsdfreebsd15.0--

Explore more