FreeBSD 14.5-RC1, the final development release before the expected 8 September launch of FreeBSD 14.5-RELEASE, is now available. The release focuses heavily on addressing security vulnerabilities.
The update points the FreeBSD kernel modules (kmods) repository to packages built on FreeBSD 14.5. Several security flaws were identified and patched, including a race condition in the POSIX shared memory large page configuration. This race condition, discovered by Ierae of GMO Cybersecurity, could allow local users to escalate privileges.
GMO Cybersecurity by Ierae also uncovered a kernel use-after-free vulnerability in the TTY ioctls, which similarly could allow unprivileged local users to gain elevated access. GovTech CSG identified another kernel use-after-free vulnerability, this one within the FreeBSD sound SNDCTL_DSP_SYNCSTART ioctl, also potentially enabling privilege escalation for local users. Alexander Leidinger found an issue with the HWPMC driver where it fails to detach during exec credential transitions, potentially allowing an unprivileged local user to continue monitoring a process even after it executes a setuid or setgid binary.
In addition to these specific vulnerabilities, FreeBSD incorporated the latest upstream OpenSSL code to address multiple security issues within that project. These security fixes constitute the primary changes in FreeBSD 14.5-RC1, offering a final opportunity for testing before the stable release.
मूल कवरेज पढ़ें
💬 टिप्पणियाँ
📜 टिप्पणी नीति