Missing Release of Memory after Effective Lifetime Affecting freebsd package, versions [,14.3.0-p10)[14.4.0,14.4.0-p1)[15.0.0,15.0.0-p5)


Severity

Recommended
0.0
high
0
10

CVSS assessment by Snyk's Security Team. Learn more

Threat Intelligence

EPSS
1.12% (62nd percentile)

Do your applications use this vulnerable package?

In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.

Test your applications

Snyk Learn

Learn about Missing Release of Memory after Effective Lifetime vulnerabilities in an interactive lesson.

Start learning
  • Snyk IDSNYK-UNMANAGED-FREEBSD-15812210
  • published29 Mar 2026
  • disclosed26 Mar 2026
  • creditMichael Tuexen

Introduced: 26 Mar 2026

CVE-2026-4247  (opens in a new tab)
CWE-401  (opens in a new tab)

How to fix?

Upgrade freebsd to version 14.3.0-p10, 14.4.0-p1, 15.0.0-p5 or higher.

Overview

Affected versions of this package are vulnerable to Missing Release of Memory after Effective Lifetime in the tcp_respond function. An attacker can exhaust system memory by sending specially crafted TCP packets that trigger the allocation and leakage of mbufs beyond the configured challenge ACK rate limit. This can be performed by an attacker who is on-path with an established TCP connection or who can establish a TCP connection to the affected system. Off-path attackers may also exploit this by guessing connection parameters and spoofing packets, though this is more difficult.

CVSS Base Scores

version 4.0
version 3.1