Vulnerabilità remota nel kernel NetBSD sfruttabile dalla rete locale

In NetBSD risolto una vulnerabilità, caused by a lack of boundary checking when processing jumbo frames in drivers for USB-connected network adapters. This issue leads to copying part of the packet beyond the buffer allocated in the mbuf cluster, which could potentially be exploited to execute malicious code at the kernel level by sending specific frames from the local network. A fix to block the vulnerability was issued on August 28, but details about the issue are only being disclosed now. The problem affects the atu, axe, axen, otus, run, and ure drivers.

Meanwhile, in the TCP/IP stack of Windows è stata rilevata critica una vulnerabilità, allowing to execute malicious code remotely by sending an ICMPv6 packet with an IPv6 router advertisement (RA, Router Advertisement).
Vulnerabilità si manifesta A partire dall'aggiornamento 1709 per Windows 10 / Windows Server 2019, che ha introdotto il supporto per la trasmissione della configurazione DNS tramite pacchetti ICMPv6 RA, come definito nella specifica RFC 6106. Il problema è causato da una cattiva allocazione del buffer per il contenuto del campo RDNSS quando si trasmettono valori di dimensioni non standard (la dimensione dei campi era interpretata come multipla di 16, il che ha portato a problemi di parsing e ha allocato 8 byte in meno di memoria, poiché 8 byte extra venivano considerati come appartenenti al campo successivo).

Fonte: opennet.ru

Acquista hosting affidabile per siti web con protezione DDoS, VPS VDS server 🔥 Acquista hosting affidabile per siti web con protezione DDoS, VPS VDS server | ProHoster