  deblin Dark Side of the Moon Premium,MVM join:2001-09-01 Middletown, DE
·Verizon FIOS
·Comcast Workplace
·DSL EXTREME
edit: September 3rd, @04:32PM
| FreeBSD swapgs local privilege escalation
There is a bug in how FreeBSD handles kernel/userland separation, in which the swapgs CPU instruction may be called twice, allowing an attacker to gain local privilege escalation.
Full details (and patches) are here:
http://security.freebsd.org/advisories/FreeBSD-SA-08:07.amd64.asc
The CVE is still under review.
This impacts only users of the amd64 arch. Note that it does not impact the i386 release on a 64-bit capable processor. -- He who is not contented with what he has, would not be contented with what he would like to have. -Socrates |
|
  Cabal Premium join:2007-01-21 Boston, MA | 'freedbsd-update'-d and done. Bugs in user-enabled mounting and icmp v6, too. |
|
  deblin Dark Side of the Moon Premium,MVM join:2001-09-01 Middletown, DE
·Verizon FIOS
·Comcast Workplace
·DSL EXTREME
| said by Cabal :'freedbsd-update'-d and done. Bugs in user-enabled mounting and icmp v6, too. Yeah saw that in the cvsweb info. I guess -stable was already "fixed" a few revisions back, though it's not quite the same as the patch against RELENG_7_0. -- He who is not contented with what he has, would not be contented with what he would like to have. -Socrates |
|