Page MenuHomeFreeBSD

ktrace: Fix uninitialized memory disclosure
ClosedPublic

Authored by markj on Jan 17 2025, 2:21 PM.
Tags
None
Referenced Files
F133241853: D48499.diff
Fri, Oct 24, 6:26 AM
Unknown Object (File)
Fri, Oct 10, 4:08 AM
Unknown Object (File)
Thu, Oct 9, 4:43 AM
Unknown Object (File)
Thu, Oct 9, 4:00 AM
Unknown Object (File)
Tue, Oct 7, 4:56 AM
Unknown Object (File)
Sun, Oct 5, 7:34 PM
Unknown Object (File)
Thu, Oct 2, 8:39 AM
Unknown Object (File)
Sep 12 2025, 10:02 PM
Subscribers

Details

Summary

The sockaddr passed to ktrcapfail() may be smaller than
sizeof(struct sockaddr), and the trailing bytes in the sockaddr
structure will be uninitialized, whereupon they get copied out to
userspace.

PR: 283673
Reported by: Yichen Chai <yichen.chai@gmail.com>
Reported by: Zhuo Ying Jiang Li <zyj20@cl.cam.ac.uk>
Fixes: 9bec84131215 ("ktrace: Record detailed ECAPMODE violations")

Diff Detail

Repository
rG FreeBSD src repository
Lint
Lint Not Applicable
Unit
Tests Not Applicable