NetBSD 的 函数(位于 中)存在一个信息泄露漏洞。该漏洞允许无特权的本地用户通过打开全局可访问的设备(如 或 )来获取真实的内核虚拟地址,因为这些设备被错误地赋予了 进程标志。攻击者可利用这一配置错误的标志位,绕过 地址混淆机制,并通过 的 查询读取包括 、 、 和 等敏感内核结构的内核虚拟地址。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| The NetBSD Foundation | NetBSD | 9.0< 9.5 |
affected |
10.0≤ 10.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| The NetBSD Foundation | NetBSD | 9.0 ~ 9.5 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet