[afnog] FreeBSD privilege escalation risk in mmap
Phil Regnauld
regnauld at nsrc.org
Thu Jun 20 18:57:33 UTC 2013
Time to patch your systems for those of you running FreeBSD.
http://lists.freebsd.org/pipermail/freebsd-security/2013-June/007055.html
"Due to insufficient permission checks in the virtual memory system, a
tracing process (such as a debugger) may be able to modify portions of
the traced process's address space to which the traced process itself
does not have write access."
Temporary workaround:
http://lists.freebsd.org/pipermail/freebsd-security/2013-June/007065.html
Cheers,
Phil
More information about the afnog
mailing list