FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
BID:3217
Info
FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
| Bugtraq ID: | 3217 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 21 2001 12:00AM |
| Updated: | Aug 21 2001 12:00AM |
| Credit: | Reported by Joost Pol <[email protected]> and published in a FreeBSD Security Advisory on August 21, 2001. |
| Vulnerable: |
FreeBSD FreeBSD 4.3 -STABLE FreeBSD FreeBSD 4.3 -RELEASE FreeBSD FreeBSD 4.3 FreeBSD FreeBSD 4.2 -STABLE FreeBSD FreeBSD 4.2 -RELEASE FreeBSD FreeBSD 4.2 FreeBSD FreeBSD 4.1.1 -STABLE FreeBSD FreeBSD 4.1.1 -RELEASE FreeBSD FreeBSD 4.1.1 FreeBSD FreeBSD 4.1 FreeBSD FreeBSD 4.0 FreeBSD FreeBSD 3.5.1 -STABLE FreeBSD FreeBSD 3.5.1 -RELEASE FreeBSD FreeBSD 3.5 -STABLE FreeBSD FreeBSD 3.5 |
| Not Vulnerable: | |
Discussion
FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
FreeBSD's linprocfs is an implementation of the Linux /proc filesystem, which provides an interface to some process and system information and parameters. It is used with Linux binaries so they can obtain access to exported kernel data.
An access validation error can occur when an unprivileged process is debugging a privileged one. It is possible for an unprivileged process to retain read access to the memory of a privleged second process by opening the /proc/<pid>/mem file prior to debugging the target process.
This may result in the disclosure of sensitive data in the target process' memory.
FreeBSD's linprocfs is an implementation of the Linux /proc filesystem, which provides an interface to some process and system information and parameters. It is used with Linux binaries so they can obtain access to exported kernel data.
An access validation error can occur when an unprivileged process is debugging a privileged one. It is possible for an unprivileged process to retain read access to the memory of a privleged second process by opening the /proc/<pid>/mem file prior to debugging the target process.
This may result in the disclosure of sensitive data in the target process' memory.
Exploit / POC
FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
Solution:
Vendor-supplied patches and updates that rectify this issue are available:
FreeBSD FreeBSD 4.2 -RELEASE
FreeBSD FreeBSD 4.3 -RELEASE
Solution:
Vendor-supplied patches and updates that rectify this issue are available:
FreeBSD FreeBSD 4.2 -RELEASE
-
FreeBSD SA-01:55 procfs.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-01:55/procfs.patch
FreeBSD FreeBSD 4.3 -RELEASE
-
FreeBSD SA-01:55 procfs.patch
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-01:55/procfs.patch -
FreeBSD SA-01:55 security-patch-procfs-01.55.tgz
ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/packages/SA-01:55/security-patc h-procfs-01.55.tgz
References
FreeBSD linprocfs Privileged Process Memory Disclosure Vulnerability
References:
References: