Files ≈ Packet Storm Packet Storm - Information Security News, Files, Tools, Exploits, Advisories and Whitepapers http://packetstormsecurity.org/ en-us Mon, 28 May 2012 08:11:51 GMT Packet Storm 144400 http://packetstormsecurity.org/ http://www.google-analytics.com/__utm.gif?utmwv=1.3&utmn=2223850493&utmcs=ISO-8859-1&utmsr=31337x31337&utmsc=32-bit&utmul=en-us&utmje=0&utmfl=-&utmcn=1&utmdt=Files%u2248%20Packet%20Storm&utmhn=packetstormsecurity.org&utmr=-&utmp=%2F1009-advisories%2Ffbsdpseudofs-nullpointer.txt%2F&utmac=UA-18885198-1&utmcc=__utma%3D32867617.2223850493.1338192711.1338192711.1338192711.1%3B%2B__utmz%3D32867617.1338192711.1.1.utmccn%3D(direct)%7Cutmcsr%3D(direct)%7Cutmcmd%3D(none) FreeBSD 7.0 - 7.2 pseudofs NULL Pointer Dereference http://packetstormsecurity.org/files/93640/fbsdpseudofs-nullpointer.txt http://packetstormsecurity.org/files/93640/fbsdpseudofs-nullpointer.txt http://packetstormsecurity.org/files/93640/FreeBSD-7.0-7.2-pseudofs-NULL-Pointer-Dereference.html Thu, 09 Sep 2010 03:00:51 GMT FreeBSD versions 7.0 through 7.2 suffer from a pseudofs NULL pointer dereference vulnerability. Due to a spurious call to pfs_unlock() in pfs_getattr() (as defined in sys/fs/pseudofs/pseudofs_vnops.c), a null pointer is dereferenced after calling extattr_get_attribute() on pseudofs vnode. By allocating a page at address 0x0, an attacker can overwrite an arbitrarily chosen portion of kernel memory, leading to a crash or local root escalation.