From nobody Wed Oct 04 01:18:03 2023 X-Original-To: dev-commits-ports-all@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4S0cJC6CBkz4wLHk; Wed, 4 Oct 2023 01:18:03 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4S0cJC5Msqz4b8V; Wed, 4 Oct 2023 01:18:03 +0000 (UTC) (envelope-from git@FreeBSD.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1696382283; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=YSdgnpkJX/Wx7RLYK8XsWSjCkw0ig8d5bDV7lLPFfqM=; b=NlCzaIMzQI1xjrXn/C2pbV5z1zINbnB9pAFMUTOJGRPmWyLzp79SiD0BUrYKwLKaPBJIgj 9ZeHxj81crit/3YuMdMDqstmw0Yah9C+3plHFYsEIqV/aoPeoLjCwIsNL8W3ZHN7nbLYsT rMOArBEk3t9jGZ6aPgsywgkCaR0jbXQJHLbfd4rsi6yuhkqIKRbDnVSujboFngKhAT08S9 IeauM2t51qU64cghQBGrrz6DQZNI2co+OOoAmCwFBMRbBO7uhn6g+xZhjE9oWgDW4QjTNp /GmCrzMxusWMbM6TBa8ptHe9buh8eGZYfw2QidHZXjZzrUt6ReZuvyV/wKX/lQ== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1696382283; a=rsa-sha256; cv=none; b=oRmBcEWUW87Oa66su43gyc0Xbl6XJbWp/1DNh4K6UxPEk6sNbv80PwtKGgfh5DXVHnnPuN UabsZd6umutmCll/vMbtG5vKho5nvTTuEYjRXPkxK0mjDJAtIa4VIzvxviCCrB6OJJh6BC ytE1yidWRJTixYdFJTBlii8ZTMYeBn63reGT+eZHNkwpK/0ROXlDYTIbRF7lmx5sApP3Fy 9p2A1KuOocuqM2JfVdGdgsq+FbsMPsLRZLnUZjPyNmwUiqK2G1yNnnmy3EVZzqsKk7s+pk wKH87ALZJ9ZkQPGrwLyjKvucZ33b5j654kbJdLfrOh55CtV2qnvxpP+ela2HCA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1696382283; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding; bh=YSdgnpkJX/Wx7RLYK8XsWSjCkw0ig8d5bDV7lLPFfqM=; b=AOQ90/kDpcUJEMuqJGs6HItIADvNlkCdtPoTyt7g5/btocej7h+oG7u9JHlSdjKmB6gJLF A/LXN4Uxw3RCRyfdmgWt4aAwZVDlrBuixRsWX7ia/p7/2Ob2SyyC8oVAJEsTme1/hVGeFT ajRvFZk2zDY2sFhR+GwSTJMDo6GTQ7NYoCNHxvq/qZd/ha7POgvkhWaZhKqCiADn/w8HoZ Y8DD+EDhzEM5jY3j7HwQq0oPqkhVsYpjY/lP1O0atIm9vTT2l/viWinrj2EDX3vdNmdzP9 +2/vSLuITIwwjSAr0FVki0xuwtVCK/XAlkuyK2San6ITFdVAbdQjLIxmZPI3CA== Received: from gitrepo.freebsd.org (gitrepo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:5]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4S0cJC4Nh8z3Cp; Wed, 4 Oct 2023 01:18:03 +0000 (UTC) (envelope-from git@FreeBSD.org) Received: from gitrepo.freebsd.org ([127.0.1.44]) by gitrepo.freebsd.org (8.17.1/8.17.1) with ESMTP id 3941I3wf071377; Wed, 4 Oct 2023 01:18:03 GMT (envelope-from git@gitrepo.freebsd.org) Received: (from git@localhost) by gitrepo.freebsd.org (8.17.1/8.17.1/Submit) id 3941I3f2071374; Wed, 4 Oct 2023 01:18:03 GMT (envelope-from git) Date: Wed, 4 Oct 2023 01:18:03 GMT Message-Id: <202310040118.3941I3f2071374@gitrepo.freebsd.org> To: ports-committers@FreeBSD.org, dev-commits-ports-all@FreeBSD.org, dev-commits-ports-main@FreeBSD.org From: Philip Paeps Subject: git: f9be46acb25f - main - security/vuxml: add FreeBSD SAs released on 2023-10-03 List-Id: Commit messages for all branches of the ports repository List-Archive: https://lists.freebsd.org/archives/dev-commits-ports-all List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-dev-commits-ports-all@freebsd.org X-BeenThere: dev-commits-ports-all@freebsd.org MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Git-Committer: philip X-Git-Repository: ports X-Git-Refname: refs/heads/main X-Git-Reftype: branch X-Git-Commit: f9be46acb25f8a721ded11bc8555daff037326bc Auto-Submitted: auto-generated The branch main has been updated by philip: URL: https://cgit.FreeBSD.org/ports/commit/?id=f9be46acb25f8a721ded11bc8555daff037326bc commit f9be46acb25f8a721ded11bc8555daff037326bc Author: Philip Paeps AuthorDate: 2023-10-04 01:16:18 +0000 Commit: Philip Paeps CommitDate: 2023-10-04 01:16:18 +0000 security/vuxml: add FreeBSD SAs released on 2023-10-03 FreeBSD-SA-23:12.msdosfs affects 12.4 and 13.2 FreeBSD-SA-23:13.capsicum affects 13.2 FreeBSD-SA-23:14.smccc affects 13.2 --- security/vuxml/vuln/2023.xml | 91 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 91 insertions(+) diff --git a/security/vuxml/vuln/2023.xml b/security/vuxml/vuln/2023.xml index 286acda968b5..54e88ab21ed5 100644 --- a/security/vuxml/vuln/2023.xml +++ b/security/vuxml/vuln/2023.xml @@ -1,3 +1,94 @@ + + FreeBSD -- arm64 boot CPUs may lack speculative execution protections + + + FreeBSD-kernel + 13.213.2_4 + + + + +

Problem Description:

+

On CPU 0 the check for the SMCCC workaround is called before + SMCCC support has been initialized.

+

Impact:

+

No speculative execution workarounds are installed on CPU 0.

+ +
+ + CVE-2023-5370 + SA-23:14.smccc + + + 2023-10-03 + 2023-10-04 + +
+ + + FreeBSD -- copy_file_range insufficient capability rights check + + + FreeBSD-kernel + 13.213.2_4 + + + + +

Problem Description:

+

The syscall checked only for the CAP_READ and CAP_WRITE + capabilities on the input and output file descriptors, respectively. + Using an offset is logically equivalent to seeking, and the syscall + must additionally require the CAP_SEEK capability.

+

Impact:

+

A sandboxed process with only read or write but no seek capability + on a file descriptor may be able to read data from or write data + to an arbitrary location within the file corresponding to that file + descriptor.

+ +
+ + CVE-2023-5369 + SA-23:13.capsicum + + + 2023-10-03 + 2023-10-04 + +
+ + + FreeBSD -- msdosfs data disclosure + + + FreeBSD-kernel + 13.213.2_4 + 12.412.4_6 + + + + +

Problem Description:

+

In certain cases using the truncate or ftruncate system call + to extend a file size populates the additional space in the file + with unallocated data from the underlying disk device, rather than + zero bytes.

+

Impact:

+

A user with write access to files on a msdosfs file system may + be able to read unintended data (for example, from a previously + deleted file).

+ +
+ + CVE-2023-5368 + SA-23:12.msdosfs + + + 2023-10-03 + 2023-10-04 + +
+ mediawiki -- multiple vulnerabilities