git: f2de044d3ade - main - security/vuxml: Document multiple vulnerabilities in Erlang/OTP
- Go to: [ bottom of page ] [ top of archives ] [ this month ]
Date: Thu, 24 Sep 2026 23:34:57 UTC
The branch main has been updated by olgeni:
URL: https://cgit.FreeBSD.org/ports/commit/?id=f2de044d3adeb343b6b7b7d3ffdfc2f8058ad2d4
commit f2de044d3adeb343b6b7b7d3ffdfc2f8058ad2d4
Author: Jimmy Olgeni <olgeni@FreeBSD.org>
AuthorDate: 2026-09-22 12:42:53 +0000
Commit: Jimmy Olgeni <olgeni@FreeBSD.org>
CommitDate: 2026-09-24 23:33:58 +0000
security/vuxml: Document multiple vulnerabilities in Erlang/OTP
---
security/vuxml/vuln/2026.xml | 60 ++++++++++++++++++++++++++++++++++++++++++++
1 file changed, 60 insertions(+)
diff --git a/security/vuxml/vuln/2026.xml b/security/vuxml/vuln/2026.xml
index db45a787d637..79a7a0e621aa 100644
--- a/security/vuxml/vuln/2026.xml
+++ b/security/vuxml/vuln/2026.xml
@@ -1,3 +1,63 @@
+ <vuln vid="60eb0bba-b668-11f1-9d0e-4c526214c986">
+ <topic>Erlang/OTP -- multiple vulnerabilities in ssl, ssh and asn1</topic>
+ <affects>
+ <package>
+ <name>erlang</name>
+ <range><lt>28.5.0.7,4</lt></range>
+ </package>
+ <package>
+ <name>erlang-runtime27</name>
+ <range><lt>27.3.4.18</lt></range>
+ </package>
+ <package>
+ <name>erlang-runtime28</name>
+ <range><lt>28.5.0.7</lt></range>
+ </package>
+ <package>
+ <name>erlang-runtime29</name>
+ <range><lt>29.1.1</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>The Erlang/OTP project reports:</p>
+ <blockquote cite="https://github.com/erlang/otp/security/advisories">
+ <p>OTP 29.1.1, 28.5.0.7 and 27.3.4.18 fix the following
+ issues:</p>
+ <ul>
+ <li>CVE-2026-89422: TLS 1.3 client skips server
+ authentication on unsolicited PSK. A pre_shared_key
+ extension in the ServerHello that the client never offered
+ causes the client to complete the handshake without
+ validating the server's certificate.</li>
+ <li>CVE-2026-68956: SSH session channel exhaustion. The
+ max_channels daemon option only limited channels with an
+ active handler, so an authenticated client could open
+ unlimited idle session channels and exhaust the memory of
+ the whole Erlang VM.</li>
+ <li>CVE-2026-65634: Superlinear CPU denial-of-service in
+ the asn1 OID decoder via large base-128 arcs.</li>
+ </ul>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <cvename>CVE-2026-65634</cvename>
+ <cvename>CVE-2026-68956</cvename>
+ <cvename>CVE-2026-89422</cvename>
+ <url>https://github.com/erlang/otp/security/advisories/GHSA-rgxr-4g4w-j875</url>
+ <url>https://github.com/erlang/otp/security/advisories/GHSA-qhcm-px9c-rvfh</url>
+ <url>https://github.com/erlang/otp/security/advisories/GHSA-qghx-23m5-r55m</url>
+ <url>https://github.com/erlang/otp/releases/tag/OTP-29.1.1</url>
+ <url>https://github.com/erlang/otp/releases/tag/OTP-28.5.0.7</url>
+ <url>https://github.com/erlang/otp/releases/tag/OTP-27.3.4.18</url>
+ </references>
+ <dates>
+ <discovery>2026-09-22</discovery>
+ <entry>2026-09-25</entry>
+ </dates>
+ </vuln>
+
<vuln vid="bba381b5-b842-11f1-8205-107c614c014e">
<topic>p5-Image-ExifTool -- code injection via crafted media</topic>
<affects>