Re: iDefense Security Advisory 10.10.06: FreeBSD ptrace PT_LWPIN

看板FB_security作者時間19年前 (2006/10/11 20:59), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/5 (看更多)
Bill Moran wrote: > Colin Percival <cperciva@freebsd.org> wrote: >> This is a local denial of service bug, which was fixed 6 weeks ago in HEAD ^^^^^^^^^^^^^^^^^^^^^^^^^^^ > That was what I expected. Section III seems to hint that it could be > used by an unprivilidged user to crash or lock a system. Yes. An unprivileged user who is able to execute code on an affected system can cause a kernel panic. There are a variety of reasons for not treating bugs like this as security issues; the strongest reason imho is that if one of your users is making a system crash, you can disable his account and call the police. > BTW, are you going to be at NYCBSDCon? No -- I only go to conferences if I have a paper to present. Colin Percival _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #15BEgQ00 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #15BEgQ00 (FB_security)