CVE-2026-4748
Last modified
CVE-2026-4748 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. A regression in the way hashes were calculated caused rules containing the address range syntax (x.x.x.x - y.y.y.y) that only differ in the address range(s) involved to be silently dropped as duplicates. Only the first of such rules is actually loaded into pf. EPSS estimates a 0.25% chance of exploitation in the next 30 days.
Description
A regression in the way hashes were calculated caused rules containing the address range syntax (x.x.x.x - y.y.y.y) that only differ in the address range(s) involved to be silently dropped as duplicates. Only the first of such rules is actually loaded into pf. Ranges expressed using the address[/mask-bits] syntax were not affected. Some keywords representing actions taken on a packet-matching rule, such as 'log', 'return tll', or 'dnpipe', may suffer from the same issue. It is unlikely that users have such configurations, as these rules would always be redundant. Affected rules are silently ignored, which can lead to unexpected behaviour including over- and underblocking.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Freebsd | Freebsd | >= 14.0, < 14.4 |
| Freebsd | Freebsd | 14.3 |
| Freebsd | Freebsd | 14.4 |
| Freebsd | Freebsd | 15.0 |
References
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2026-4748?
How severe is CVE-2026-4748?
How do I fix CVE-2026-4748?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-47473NVIDIA TensorRT-LLM contains a vulnerability where an attack…7.4
- CVE-2026-47475NVIDIA TensorRT-LLM contains a vulnerability in the OpenAI-c…6.2
- CVE-2026-47476NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47477NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47478NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47479NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47480NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47481NVIDIA Triton Inference Server for Linux contains a vulnerab…6.5
- CVE-2026-47482NVIDIA Triton Inference Server for Linux contains a vulnerab…7.5
- CVE-2026-47483NVIDIA DCGM Exporter for all platforms contains a vulnerabil…8.2
- CVE-2026-47487NVIDIA Triton Inference Server for Linux contains a vulnerab…4.4
- CVE-2026-4749NVD-CWE-noinfo vulnerability in albfan miraclecast.This issu…6.5
Are you affected by CVE-2026-4748?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
