The sendfile system-call implementation in sys/kern/uipc_syscalls.c in the kernel in FreeBSD 9.2-RC1 and 9.2-RC2 does not properly pad transmissions, which allows local users to obtain sensitive information (kernel memory) via a length greater than the length of the file.
2013-09-23T20:55:07.387
2025-04-11T00:51:21.963
Deferred
CVSSv2: 4.7 (MEDIUM)
AV:L/AC:M/Au:N/C:C/I:N/A:N
3.4
6.9
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Operating System | freebsd | freebsd | 9.2 | Yes |
| Operating System | freebsd | freebsd | 9.2 | Yes |