Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2026-49425

The compat32 kevent() handler translates a 64-bit kevent struct into a stack- declared 32-bit struct. It did not first zero the stack struct. An unprivileged user may observe a small amount of uninitialized kernel stack data, which may contain sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 1.6%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2026-49425


Contact Us

Shodan ® - All rights reserved