<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>FreeBSD swapgs local privilege escalation in All Things Unix</title>
<link>http://www.dslreports.com/forum/r21052038</link>
<description></description>
<language>en</language>
<pubDate>Wed, 11 Nov 2009 02:28:27 EDT</pubDate>
<lastBuildDate>Wed, 11 Nov 2009 02:28:27 EDT</lastBuildDate>

<item>
<title>Re: FreeBSD swapgs local privilege escalation</title>
<link>http://www.dslreports.com/forum/remark,21052110</link>
<description><![CDATA[<A HREF="/useremail/u/465839"><b>deblin</b></A> : <div class="bquote"><small>said by  Cabal <A HREF="/useremail/u/1432955"><IMG SRC="http://i.dslr.net/bb/profile.gif" ALT="See Profile" BORDER=0 WIDTH=16 HEIGHT=11></A> :</small><br><br>'freedbsd-update'-d and done. Bugs in user-enabled mounting and icmp v6, too.<br> </div>Yeah saw that in the cvsweb info. I guess -stable was already "fixed" a few revisions back, though it's not quite the same as the patch against RELENG_7_0.<br><small>--<br>He who is not contented with what he has, would not be contented with what he would like to have.  -Socrates</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21052110</guid>
<pubDate>Wed, 03 Sep 2008 16:43:41 EDT</pubDate>
</item>

<item>
<title>Re: FreeBSD swapgs local privilege escalation</title>
<link>http://www.dslreports.com/forum/remark,21052099</link>
<description><![CDATA[<A HREF="/useremail/u/1432955"><b>Cabal</b></A> : 'freedbsd-update'-d and done. Bugs in user-enabled mounting and icmp v6, too.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21052099</guid>
<pubDate>Wed, 03 Sep 2008 16:42:40 EDT</pubDate>
</item>

<item>
<title>FreeBSD swapgs local privilege escalation</title>
<link>http://www.dslreports.com/forum/remark,21052038</link>
<description><![CDATA[<A HREF="/useremail/u/465839"><b>deblin</b></A> : There is a bug in how FreeBSD handles kernel/userland separation, in which the swapgs CPU instruction may be called twice, allowing an attacker to gain local privilege escalation.<br><br>Full details (and patches) are here:<br><br><A HREF="http://security.freebsd.org/advisories/FreeBSD-SA-08:07.amd64.asc">http://security.freebsd.org/advisories/FreeBSD-SA-08:07.amd64.asc</a><br><br>The <A HREF="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-3890">CVE</a> is still under review.<br><br>This impacts <b>only users of the amd64 arch</b>. Note that it does not impact the i386 release on a 64-bit capable processor.<br><small>--<br>He who is not contented with what he has, would not be contented with what he would like to have.  -Socrates</small>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,21052038</guid>
<pubDate>Wed, 03 Sep 2008 16:31:09 EDT</pubDate>
</item>

</channel>
</rss>
