Multiple CVEs for illumos and distros: door server processes
illumos reported door-server CVEs causing denial of service and missing authorization in nscd and ipmgmtd.
Dan McDonald reported illumos CVEs for denial of service and missing authorization in door server processes, spanning CVE-2026-104112 through CVE-2026-104117. CVE-2026-104112 (bug 18494) is unbounded file-descriptor allocation in nscd. CVE-2026-104113 is an ipmgmtd double-free of caller credentials on authorization failure, limited to OmniOS and SmartOS rather than general illumos. No active exploitation is stated.
- CVE-2026-104112: nscd unbounded file-descriptor allocation (bug 18494).
- CVE-2026-104113: ipmgmtd double-frees credentials after authorization failure.
- ipmgmtd flaw affects OmniOS and SmartOS only, not general illumos.
- Series through CVE-2026-104117 covers door-server DoS and missing authorization.
Vulnerabilities mentionedAll →
- CVE-2026-1041126.8—FD leak in illumos nscd allows local kernel memory exhaustionpublished · illumos nscd (name service cache daemon)
- CVE-2026-1041135.4—Double-free crash in OmniOS and SmartOS ipmgmtdpublished · OmniOS
Posted by Dan McDonald on Oct 09 Per https://illumos.topicbox.com/groups/developer/T3b859664594b7762-Maa764f8552227c7080bcaabc/cve-2026-104112-to-cve-2026-104117-denial-of-service-and-missing-authorization-in-door-servers illumos would like to report the following CVEs: CVE-2026-104112 18494 nscd: unbounded file descriptor allocation CVE-2026-104113 ipmgmtd double-frees caller credentials on authorization failure (OmniOS and SmartOS only, no general illumos issue)...
This source does not provide full text. Read it at seclists.org.