# CVE-2026-7270

## Summary

- **CVE ID:** CVE-2026-7270
- **Severity:** HIGH
- **CVSS Score:** 7.8 (CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
- **CWE:** CWE-783
- **Published:** Apr 30, 2026
- **Last Modified:** May 10, 2026

## Description

An operator precedence bug in the kernel results in a scenario where a buffer overflow causes attacker-controlled data to overwrite adjacent execve(2) argument buffers.

The bug may be exploitable by an unprivileged user to obtain superuser privileges.

## Affected Products

- FreeBSD — FreeBSD (15.0-RELEASE)
- FreeBSD — FreeBSD (14.4-RELEASE)
- FreeBSD — FreeBSD (14.3-RELEASE)
- FreeBSD — FreeBSD (13.5-RELEASE)

## References

- [CNA](https://security.freebsd.org/advisories/FreeBSD-SA-26:13.exec.asc)
- [CVE](https://blog.calif.io/p/cve-2026-7270-how-i-get-root-on-freebsd)
- [CVE](https://news.ycombinator.com/item?id=48077971)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.18%
- **EPSS Percentile:** 7.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-12._