1. 자유게시판
  2. 스마트폰 질문과 답
  3. 사용자 팁/사용기
  4. 아무거나 질문답
  5. 토론의 장
  6. 방명록

  1. 자유게시판
  2. 스마트폰 질문과 답
  3. 사용자 팁/사용기
  4. 아무거나 질문답
  5. 토론의 장
  6. 방명록
    오늘: 1   어제: 1   전체: 11671960  

생일 축하해요

  • 04월25일
    박영록
  • 04월25일
    id: 김지철
  • 04월25일
    Bryant
  • 04월25일
    정진석
  • 04월25일
    이승룡
  • 04월25일
    고혁준
  • 04월25일
    자장범벅
  • 04월25일
    실수로백억
  • 04월25일
    원사마파더
  • 04월25일
    주서

  로그인한 사람


조회 수 39602 추천 수 0 댓글 2
?

단축키

Prev이전 문서

Next다음 문서

+ - Up Down Comment Print
?

단축키

Prev이전 문서

Next다음 문서

+ - Up Down Comment Print
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

=============================================================================
FreeBSD-SA-05:08.kmem                                       Security Advisory
                                                          The FreeBSD Project

Topic:          Local kernel memory disclosure

Category:       core
Module:         sys
Announced:      2005-05-06
Credits:        Christian S.J. Peron
                Uwe Doering
Affects:        All FreeBSD releases prior to 5.4-RELEASE
Corrected:      2005-05-08 10:19:37 UTC (RELENG_5, 5.4-STABLE)
                2005-05-07 03:58:26 UTC (RELENG_5_4, 5.4-RELEASE)
                2005-05-08 10:23:52 UTC (RELENG_5_3, 5.3-RELEASE-p14)
                2005-05-08 10:26:42 UTC (RELENG_4, 4.11-STABLE)
                2005-05-08 10:29:54 UTC (RELENG_4_11, 4.11-RELEASE-p8)
                2005-05-08 10:35:56 UTC (RELENG_4_10, 4.10-RELEASE-p13)
CVE Name:       CAN-2005-1406

For general information regarding FreeBSD Security Advisories, including descriptions of the fields above, security branches, and the following sections, please visit <URL:http://www.freebsd.org/security/>.

0.   Revision History

v1.0 2005-05-06  Initial release.
v1.1 2005-05-07  Updated patch to include related issues reported by
                 Uwe Doering.

I.   Background

In many parts of the FreeBSD kernel, names (of mount points, devices, files, etc.) are manipulated as NULL-terminated strings, but are provided to applications within fixed-length buffers.

II.  Problem Description

In several places, variable-length strings were copied into fixed-length buffers without zeroing the unused portion of the buffer.

III. Impact

The previous contents of part of the fixed-length buffers will be disclosed to applications.  Such memory might contain sensitive information, such as portions of the file cache or terminal buffers.
This information might be directly useful, or it might be leveraged to obtain elevated privileges in some way.  For example, a terminal buffer might include a user-entered password.

IV.  Workaround

No workaround is available.

V.   Solution

Perform one of the following:

1) Upgrade your vulnerable system to 4-STABLE or 5-STABLE, or to the RELENG_5_3, RELENG_4_11, or RELENG_4_10 security branch dated after the correction date.

2) To patch your present system:

The following patches have been verified to apply to FreeBSD 4.10, 4.11, and 5.3 systems.

a) Download the relevant patch from the location below, and verify the detached PGP signature using your PGP utility.

[FreeBSD 4.x]
# fetch ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-05:08/kmem4x.patch
# fetch ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-05:08/kmem4x.patch.asc

[FreeBSD 5.x]
# fetch ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-05:08/kmem5x.patch
# fetch ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-05:08/kmem5x.patch.asc

b) Apply the patch.

# cd /usr/src
# patch < /path/to/patch

c) Recompile your kernel as described in <URL:http://www.freebsd.org/handbook/kernelconfig.html> and reboot the system.

VI.  Correction details

The following list contains the revision numbers of each file that was corrected in FreeBSD.

Branch                                                           Revision
  Path
- -------------------------------------------------------------------------
RELENG_4
  src/sys/kern/uipc_usrreq.c                                    1.54.2.11
  src/sys/kern/vfs_subr.c                                      1.249.2.32
  src/sys/net/if_mib.c                                            1.8.2.3
  src/sys/netinet/ip_divert.c                                    1.42.2.8
  src/sys/netinet/raw_ip.c                                      1.64.2.20
  src/sys/netinet/tcp_subr.c                                    1.73.2.34
  src/sys/netinet/udp_usrreq.c                                  1.64.2.20
RELENG_4_11
  src/UPDATING                                              1.72.2.91.2.9
  src/sys/conf/newvers.sh                                  1.44.2.39.2.12
  src/sys/kern/uipc_usrreq.c                                1.54.2.10.8.1
  src/sys/kern/vfs_subr.c                                  1.249.2.31.6.1
  src/sys/net/if_mib.c                                        1.8.2.2.2.1
  src/sys/netinet/ip_divert.c                                1.42.2.7.2.1
  src/sys/netinet/raw_ip.c                                  1.64.2.19.2.1
  src/sys/netinet/tcp_subr.c                                1.73.2.33.4.1
  src/sys/netinet/udp_usrreq.c                              1.64.2.19.6.1
RELENG_4_10
  src/UPDATING                                             1.73.2.90.2.14
  src/sys/conf/newvers.sh                                  1.44.2.34.2.15
  src/sys/kern/uipc_usrreq.c                                1.54.2.10.6.1
  src/sys/kern/vfs_subr.c                                  1.249.2.31.4.1
  src/sys/net/if_mib.c                                       1.8.2.1.16.2
  src/sys/netinet/ip_divert.c                                1.42.2.6.6.1
  src/sys/netinet/raw_ip.c                                  1.64.2.18.4.1
  src/sys/netinet/tcp_subr.c                                1.73.2.33.2.1
  src/sys/netinet/udp_usrreq.c                              1.64.2.19.4.1
RELENG_5
  src/sys/kern/subr_bus.c                                       1.156.2.7
  src/sys/kern/uipc_usrreq.c                                   1.138.2.14
  src/sys/kern/vfs_subr.c                                       1.522.2.5
  src/sys/net/if_mib.c                                           1.13.4.2
  src/sys/netinet/ip_divert.c                                    1.98.2.3
  src/sys/netinet/raw_ip.c                                      1.142.2.5
  src/sys/netinet/tcp_subr.c                                   1.201.2.18
  src/sys/netinet/udp_usrreq.c                                  1.162.2.8
RELENG_5_4
  src/UPDATING                                             1.342.2.24.2.9
  src/sys/kern/subr_bus.c                                   1.156.2.5.2.1
  src/sys/kern/uipc_usrreq.c                               1.138.2.13.2.1
  src/sys/kern/vfs_subr.c                                   1.522.2.4.2.1
  src/sys/net/if_mib.c                                       1.13.4.1.2.1
  src/sys/netinet/ip_divert.c                                1.98.2.2.2.1
  src/sys/netinet/raw_ip.c                                  1.142.2.4.2.1
  src/sys/netinet/tcp_subr.c                               1.201.2.15.2.1
  src/sys/netinet/udp_usrreq.c                              1.162.2.7.2.1
RELENG_5_3
  src/UPDATING                                            1.342.2.13.2.17
  src/sys/conf/newvers.sh                                  1.62.2.15.2.19
  src/sys/kern/subr_bus.c                                   1.156.2.2.2.1
  src/sys/kern/uipc_usrreq.c                                1.138.2.2.2.2
  src/sys/kern/vfs_subr.c                                   1.522.2.1.2.1
  src/sys/net/if_mib.c                                           1.13.6.1
  src/sys/netinet/ip_divert.c                                    1.98.4.1
  src/sys/netinet/raw_ip.c                                  1.142.2.2.2.1
  src/sys/netinet/tcp_subr.c                                1.201.2.1.2.2
  src/sys/netinet/udp_usrreq.c                              1.162.2.3.2.1
- -------------------------------------------------------------------------

The latest revision of this advisory is available at ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SA-05:08.kmem.asc
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (FreeBSD)

iD8DBQFCfe9TFdaIBMps37IRAoANAJ9SvXgbD8c2Pw4akOWba95PklG1NgCeOPce
Ib7DiBQuu7LR2ZG70BP+eKQ=
=8wrv
-----END PGP SIGNATURE-----
  • ?
    khunter 2005.05.11 11:43
    이거...
    날 보라구 올린거지...?
    -_-;
  • ?
    Nest 2005.05.11 14:04
    GG

List of Articles
번호 제목 글쓴이 날짜 조회 수
공지 보이콧 재팬 Boycott Japan file id: 동글래미 2019.07.20 45751
37525 . . . 제가 요 근래 사용하고 있는 피뎅이 효과음 . . . . 2 id: 정령『精靈』 2005.07.12 3531
37524 . . . 제가 요 근래 사용하고 있는 피뎅이 효과음 . . . . 2 정령『精靈』 2005.07.12 2992
37523 (주)사이버뱅크라는 회사에 더이상 손해보실 분들이 없었으면 합니다. 17 나름이 2005.03.13 3516
37522 (주)사이버뱅크라는 회사에 더이상 손해보실 분들이 없었으면 합니다. 17 나름이 2005.03.13 3533
37521 -0 -부산 금정구 유베이스도 -_-b 5 쉼표세개,,, 2006.09.29 2695
37520 -0 -부산 금정구 유베이스도 -_-b 5 쉼표세개,,, 2006.09.29 2716
37519 11월 14일 출첵~` 9 송광섭 2007.11.14 2504
37518 11월 14일 출첵~` 9 송광섭 2007.11.14 2711
37517 1월 21일 출석이요~!! 6 진성준 2008.01.21 2312
37516 1월 21일 출석이요~!! 6 진성준 2008.01.21 2795
37515 BM500 4G 사용하게 되었네요. (펌) 2 별왕 2007.10.01 2902
37514 BM500 4G 사용하게 되었네요. (펌) 2 별왕 2007.10.01 2980
37513 Fimm Daily Free (뒷북일려나요? ) 5 보디가드 2006.01.18 2624
37512 Fimm Daily Free (뒷북일려나요? ) 5 보디가드 2006.01.18 2373
37511 i-Tech사의 Clip R35 싸게 파네요... 32 진성준 2007.08.17 3471
37510 i-Tech사의 Clip R35 싸게 파네요... 32 진성준 2007.08.17 3532
37509 InSuite Mobile 5.0 ProPOZ limited edition이 무엇인가요? 1 김상희 2005.09.08 2856
37508 InSuite Mobile 5.0 ProPOZ limited edition이 무엇인가요? 1 김상희 2005.09.08 2597
37507 khunter님을 만나다... 4 윈드포유 2005.04.24 2205
37506 khunter님을 만나다... 4 윈드포유 2005.04.24 2206
37505 mDic용 자전 poz301에 시치를...어떻게하는지요 1 성영옥 2006.03.26 2851
37504 mDic용 자전 poz301에 시치를...어떻게하는지요 1 성영옥 2006.03.26 3058
37503 mostech 님 감사 합니다. 2 칼갈어™ 2005.01.05 2421
37502 mostech 님 감사 합니다. 2 칼갈어™ 2005.01.05 2361
37501 NEW S40 CF 1 아아아앙 2007.07.28 2436
37500 NEW S40 CF 1 아아아앙 2007.07.28 2394
37499 PokoUSB 교통카드 (공인인증서 기능포함) 1 id: 제라드 2008.03.13 2728
37498 PokoUSB 교통카드 (공인인증서 기능포함) 1 제라드 2008.03.13 2979
37497 POZ-510 그리고 POZ-532 공동 구매 조건들.... 18 id: BlueNavi 2006.03.09 4642
37496 POZ-510 그리고 POZ-532 공동 구매 조건들.... 18 BlueNavi 2006.03.09 4748
Board Pagination ‹ Prev 1 2 3 4 5 6 7 8 9 10 ... 1251 Next ›
/ 1251

나눔글꼴 설치 안내


이 PC에는 나눔글꼴이 설치되어 있지 않습니다.

이 사이트를 나눔글꼴로 보기 위해서는
나눔글꼴을 설치해야 합니다.

설치 취소

Designed by sketchbooks.co.kr / sketchbook5 board skin

Sketchbook5, 스케치북5

Sketchbook5, 스케치북5

Sketchbook5, 스케치북5

Sketchbook5, 스케치북5