{"id":"CVE-2026-58089","title":"When a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivileged processes","summary":"When a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivileged processes.  An inverted check meant that this scenario was not handled properly.\n\nAn unprivileged local user wh…","severity":"high","cvss":7.8,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-273"],"vendor":"freebsd","product":"freebsd","affected":["freebsd = 14.4","freebsd = 15.0","freebsd = 15.1"],"published":"2026-08-26","updated":"2026-09-24","sourceUpdated":"2026-09-24T14:06:22.730","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-58089","references":[{"url":"https://security.freebsd.org/advisories/FreeBSD-SA-26:56.hwpmc.asc","label":"secteam@freebsd.org"}],"tags":["nvd"],"epss":0.00137,"epssPercentile":0.02537,"ingestedAt":"2026-09-24T14:44:21.305Z","slug":"CVE-2026-58089","body":"## Overview\n\nWhen a process calls execve(2) to execute a setuid or setgid image, hwpmc(4) is supposed to detach PMCs owned by unprivileged processes.  An inverted check meant that this scenario was not handled properly.\n\nAn unprivileged local user who has attached PMCs to a process can continue monitoring it after the process executes a setuid or setgid binary, contrary to the intended policy.\n\n## Affected\n\n- `freebsd = 14.4`\n- `freebsd = 15.0`\n- `freebsd = 15.1`\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":42.9,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}