Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
2642 articles · 163880 vulns · 37/41 feeds (7d)
← Back to list
EST
PRE-CVEPATCHED
openbsd · openbsd sppp pap handler

OpenBSD sppp_pap_input PAP Authentication Bypass Vulnerability

60% confidence

Description

The sppp_pap_input() function in OpenBSD's PPP PAP authentication handler allows attackers to bypass authentication by sending a PAP Auth-Request with zero-length name and password fields. The bcmp() function returns 0 for zero-length comparisons, enabling credentialless authentication. A secondary heap over-read vulnerability exists when name_len exceeds the allocated credential buffer size.

Affected Products

VendorProductVersions
openbsdopenbsd sppp pap handler<= 7.6

Related News (1 articles)

Tier C
oss-security6h ago
OpenBSD sppp_pap_input: PAP authentication bypass
→ No new info (linked only)
CISA KEV❌ No
Actively exploited❌ No
Patch available
-current
CWECWE-20, CWE-119
PublishedJun 16, 2026
Last enriched6h ago
Tags
authentication bypasspppoeopenbsd
Trending Score27
Source articles1
Independent1
Info Completeness8/14
Missing: cve_id, cvss, epss, kev, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

HIGHCVE-2026-35385
CVE-2026-35385: In OpenSSH before 10.3, a file downloaded by scp may be installed setuid or setgid, an outcome contrary to some users' e
Trending: 6
LOWCVE-2026-35388
CVE-2026-35388: OpenSSH before 10.3 omits connection multiplexing confirmation for proxy-mode multiplexing sessions.
Trending: 4
LOWCVE-2026-35386EXP
CVE-2026-35386: In OpenSSH before 10.3, command execution can occur via shell metacharacters in a username within a command line. This r
Trending: 3
MEDIUMCVE-2026-35414EXP
CVE-2026-35414: OpenSSH before 10.3 mishandles the authorized_keys principals option in uncommon scenarios involving a principals list i
Trending: 3
LOWCVE-2026-35387EXP
CVE-2026-35387: OpenSSH before 10.3 can use unintended ECDSA algorithms. Listing of any ECDSA algorithm in PubkeyAcceptedAlgorithms or H
Trending: 3

Pin to Dashboard

Verification

State: reported
Confidence: 60%

Vulnerability Timeline

CVE Published
Jun 16, 2026
Exploit Available
Jun 16, 2026
Patch Available
Jun 16, 2026
Discovered by ZDM
Jun 16, 2026