Re: [PATCH] Fixing soft NFS umount -f, round 1

2015-06-27 Thread Emmanuel Dreyfus
Chuck Silvers c...@chuq.com wrote: 1) In umount(8), we called sync(2) before attempting a forced unmount(2), but sync(2) does not return before data is sent to storage, and therefore we never had the opportunity to attempt the forced unmount when using -f the sync() is never

Brainy: two UAFs

2015-06-27 Thread Maxime Villard
Hi, I've been developing a new analysis engine for Brainy for some weeks now, and I've just updated the UAF catcher to use this new engine. Even though it still needs some work, it has just found two use- after-free: 1. double free in sys/dev/pci/if_et.c 2. beautiful UAF in

Re: Brainy: two UAFs

2015-06-27 Thread Christos Zoulas
In article 558e40ea.1030...@m00nbsd.net, Maxime Villard m...@m00nbsd.net wrote: Hi, I've been developing a new analysis engine for Brainy for some weeks now, and I've just updated the UAF catcher to use this new engine. Even though it still needs some work, it has just found two use- after-free: