Page MenuHomeFreeBSD

ktrace: Fix uninitialized memory disclosure
ClosedPublic

Authored by markj on Jan 17 2025, 2:21 PM.
Tags
None
Referenced Files
F110658261: D48499.id149538.diff
Fri, Feb 21, 1:39 PM
Unknown Object (File)
Sun, Feb 2, 2:44 AM
Unknown Object (File)
Sat, Feb 1, 6:53 AM
Unknown Object (File)
Sat, Feb 1, 3:47 AM
Unknown Object (File)
Fri, Jan 31, 11:38 PM
Unknown Object (File)
Fri, Jan 31, 8:43 PM
Unknown Object (File)
Fri, Jan 31, 8:28 AM
Unknown Object (File)
Wed, Jan 29, 9:29 AM
Subscribers

Details

Summary

The sockaddr passed to ktrcapfail() may be smaller than
sizeof(struct sockaddr), and the trailing bytes in the sockaddr
structure will be uninitialized, whereupon they get copied out to
userspace.

PR: 283673
Reported by: Yichen Chai <yichen.chai@gmail.com>
Reported by: Zhuo Ying Jiang Li <zyj20@cl.cam.ac.uk>
Fixes: 9bec84131215 ("ktrace: Record detailed ECAPMODE violations")

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable