Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- From: "O. Hartmann" <ohartman@xxxxxxxxxxxxxxxxxxxxxxx>
- Date: Sat, 25 Nov 2006 13:20:33 +0100
Scott Long wrote:
Kevin Oberman wrote:Sorry, if my question may sound heretic, but wouldn't it be more
Date: Fri, 24 Nov 2006 15:58:39 -0700
From: Scott Long <scottl@xxxxxxxxxx>
Sender: owner-freebsd-stable@xxxxxxxxxxx
David Malone wrote:
Another thing to keep in mind is that filesystem mounting is onlyThese two bugs are shown for FreeBSD only and I guess, Solaris and
other BSDs still use UFS. Are they more robust against this
exploit or type of exploit?
I don't know of a concerted effort by anyone to improve UFS in this
way. I would guess that the odd bug would have been resolved, but
no large scale work.
David.
available to the super-user. If a feature came along such as
automatically mounting USB drives, these bugs would indeed be critical.
But for now, they are not.
Not on the base system, but Gnome 2.16 with hald running will mount a
removable device automatically. The standard configuration of Gnome runs
hald. Allowing user mounts of removable media is even formalized by the
addition of /media to hier(7). I'm not sure this should simply be
treated as not being significant.
Would it be possible to restrict Gnome to only auto-mounting msdos and
cd9660 filesystems?
Scott
_______________________________________________
freebsd-stable@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-stable
To unsubscribe, send any mail to "freebsd-stable-unsubscribe@xxxxxxxxxxx"
sophisticated solving the problem instead of disabling everything what
could trigger the bug?
Look, on many desktop systems, USB backup drives become very common,
even eSATA backup solutions. I try to use those convenienc things eithe
in lab or at home on my private machine. Mounting the file system is
done via amd() and automatically as the file system gets accessed via
its link point.
Oliver
_______________________________________________
freebsd-stable@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-stable
To unsubscribe, send any mail to "freebsd-stable-unsubscribe@xxxxxxxxxxx"
- Follow-Ups:
- Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- From: Kris Kennaway
- Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- From: Scott Long
- Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- From: Pieter de Goeje
- Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- References:
- Prev by Date: Re: deadlock in "zoneli" state on 6.2-PRERELEASE
- Next by Date: Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- Previous by thread: Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- Next by thread: Re: UFS Bug: FreeBSD 6.1/6.2/7.0: MOKB-08-11-2006, CVE-2006-5824, MOKB-03-11-2006, CVE-2006-5679
- Index(es):
Relevant Pages
|
|