FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

Erlang/OTP -- megaco flex scanner buffer overflow

Affected packages
erlang < 28.5.0.4,4
erlang-runtime27 < 27.3.4.15
erlang-runtime28 < 28.5.0.4
erlang-runtime29 < 29.0.4

Details

VuXML ID 445da2cc-89e1-11f1-b35c-4c526214c986
Discovery 2026-07-27
Entry 2026-07-27

https://github.com/erlang/otp/security/advisories/GHSA-7xgh-gmgf-q2g7 reports:

A remote unauthenticated attacker can crash Erlang nodes running the megaco text codec with the flex scanner option by sending an H.248/Megaco message with a property parm name exceeding 452 bytes. The overflow occurs in a C linked-in driver, causing the entire BEAM VM process to terminate. It is reachable pre-authentication, as the flex scanner processes raw TCP payloads before protocol validation.

References

CVE Name CVE-2026-59250
URL https://github.com/erlang/otp/security/advisories/GHSA-7xgh-gmgf-q2g7