This page was exported from phaq
[ http://phaq.phunsites.net ] Export date: Sat Jun 10 0:33:34 2023 / +0000 GMT |
Few days ago, the Linux ECONET exploit was uncovered. Not long afterwards a customer contacted us at work to know, if he was vulnerable or not. His arguments: Someone posted to the mailing list that FreeBSD would be exploitable as well - not to mention that the customer indeed uses FreeBSD. I instantly replied, that FreeBSD would _not_ be vulnerable, otherwise a security advisory would have been posted on their site. Grieving in unbelief? Well, despite of being very unlikely, that a Linux-specific exploit would run without modification on FreeBSD, would it not be required to also have the ECONET symbols available in the sources and additionally also a network driver for it? Let's check on the full source tree:
This much ends up in the system's include directory:
However nothing of this all seems directly related to an ECONET driver, but instead to the Berkeley Packet Filter. So to speak, trying to compile the exploit raises expected errors about undeclared symbols.
To summarize this: The exploit does not apply to FreeBSD - not even after loading linux.ko and installing linux_base-f10 or a similar linux compatibility port. As for the reporter, I feel this is indeed a fake because auf several reasons.
So, this is a perfect example of how people jump at trolls. As if we all didn't have better things to do .... |
Powered by [ Universal Post Manager ] plugin. HTML saving format developed by gVectors Team www.gVectors.com |