Page MenuHomeFreeBSD

Avoid kernel stack disclosure in compat32 stat
ClosedPublic

Authored by emaste on Mar 29 2022, 2:53 PM.
Tags
None
Referenced Files
Unknown Object (File)
Mon, Mar 23, 2:21 AM
Unknown Object (File)
Tue, Mar 17, 4:36 AM
Unknown Object (File)
Tue, Mar 17, 4:28 AM
Unknown Object (File)
Fri, Mar 6, 4:49 AM
Unknown Object (File)
Mon, Feb 23, 9:26 AM
Unknown Object (File)
Mon, Feb 23, 9:26 AM
Unknown Object (File)
Feb 23 2026, 1:16 AM
Unknown Object (File)
Feb 22 2026, 9:19 AM
Subscribers

Details

Summary
copy_stat and copy_ostat used by 32-bit compat *stat calls left some
padding bytes uninitialized.

This issue does not exist in stable/12 and later as it was incidentally
addressed as part of the 64-bit inode project.

Reported by:    Reno Robert, Trend Micro Zero Day Initiative
Sponsored by:   The FreeBSD Foundation

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable