Freebsd Foundation · Freebsd · CVE-2026-45257
**Name of the Vulnerable Software and Affected Versions**
FreeBSD (affected versions not specified)
**Description**
A local privilege escalation issue exists in FreeBSD kTLS-RX. The flaw allows a local user to overwrite files they have read access to by utilizing in-place AES-GCM decryption over `sendfile(2)` EXTPG mbufs to write to the page-cache. This can be leveraged to overwrite SUID files to obtain root privileges. This is a local exploit typically used in post-exploitation scenarios after initial code execution has been achieved in a service.
**Recommendations**
At the moment, there is no information about a newer version that contains a fix for this vulnerability.