CVE-2026-4652
EUVD-2026-1613026.03.2026, 07:16
On a system exposing an NVMe/TCP target, a remote client can trigger a kernel panic by sending a CONNECT command for an I/O queue with a bogus or stale CNTLID. An attacker with network access to the NVMe/TCP target can trigger an unauthenticated Denial of Service condition on the affected machine.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| freebsd | freebsd | 15.0 |
| freebsd | freebsd | 15.0:p1 |
| freebsd | freebsd | 15.0:p2 |
| freebsd | freebsd | 15.0:p3 |
| freebsd | freebsd | 15.0:p4 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration