Advisories Blog | G5 Cyber Security

Coda Filesystem Kernel Memory Disclosure

Virtual Security Research, LLC. Security Advisory – VSR identified a vulnerability in the Coda filesystem kernel module, as implemented for FreeBSD and NetBSD. By sending a specially crafted ioctl request to a mounted Coda filesystem, an unprivileged local user could read large portions of kernel heap memory, leading to the disclosure of potentially sensitive information.

 

You can download this advisory from the following link: https://packetstormsecurity.com/files/download/92828/coda-disclose.txt

Source: https://packetstormsecurity.com/files/92828/Coda-Filesystem-Kernel-Memory-Disclosure.html

Exit mobile version