Vulnerabilità in libc e nello stack IPv6 di FreeBSD

In FreeBSD, several vulnerabilities have been fixed that allow a local user to elevate their privileges in the system:

  • CVE-2020-7458 — a vulnerability in the posix_spawnp mechanism provided in libc for creating processes, exploited by specifying an excessively large value in the PATH environment variable. This vulnerability can lead to writing data outside the memory area allocated for the stack and can overwrite the contents of subsequent buffers with controlled values.
  • CVE-2020-7457 — a vulnerability in the IPv6 stack that allows a local user to execute their code at the kernel level through manipulations using the IPV6_2292PKTOPTIONS option for a network socket.
  • Risolti due vulnerabilità (CVE-2020-12662, CVE-2020-12663) in the supplied DNS server, Unbound, allowing for a remote denial of service when communicating with a server controlled by an attacker or using the DNS server as a traffic amplifier in DDoS attacks.

Additionally, three non-security related issues (errata) have been fixed that could lead to kernel crashes while using the mps driver. (nell'esecuzione del comando sas2ircu), subsistemi LinuxKPI (nella redirezione di X11) e hypervisor bhyve (nella pass-through di dispositivi PCI).

Fonte: opennet.ru

Acquista hosting affidabile per siti web con protezione DDoS, VPS VDS server 🔥 Acquista hosting affidabile per siti web con protezione DDoS, VPS VDS server | ProHoster