CVE-2026-56099
EUVD-2026-3793818.06.2026, 20:16
OpenBSD before commit 6a23123 (2026-06-18) contains an out-of-bounds read vulnerability in the mpls_do_error function within sys/netmpls/mpls_input.c that allows remote attackers to disclose kernel stack memory by sending crafted MPLS frames with 16 labels and no Bottom-of-Stack bit set.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| openbsd | openbsd | 𝑥 < 2026-06-18 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References