Module Name: src Committed By: snj Date: Sat Sep 9 16:58:10 UTC 2017
Modified Files: src/doc [netbsd-7-0]: CHANGES-7.0.3 Log Message: 1507 To generate a diff of this commit: cvs rdiff -u -r1.1.2.62 -r1.1.2.63 src/doc/CHANGES-7.0.3 Please note that diffs are not public domain; they are subject to the copyright notices on the relevant files.
Modified files: Index: src/doc/CHANGES-7.0.3 diff -u src/doc/CHANGES-7.0.3:1.1.2.62 src/doc/CHANGES-7.0.3:1.1.2.63 --- src/doc/CHANGES-7.0.3:1.1.2.62 Mon Sep 4 16:07:50 2017 +++ src/doc/CHANGES-7.0.3 Sat Sep 9 16:58:10 2017 @@ -1,4 +1,4 @@ -# $NetBSD: CHANGES-7.0.3,v 1.1.2.62 2017/09/04 16:07:50 snj Exp $ +# $NetBSD: CHANGES-7.0.3,v 1.1.2.63 2017/09/09 16:58:10 snj Exp $ A complete list of changes from the NetBSD 7.0.2 release to the NetBSD 7.0.3 release: @@ -4941,3 +4941,10 @@ sys/arch/sparc64/sparc64/compat_13_machd in %pstate and get kernel privileges on the hardware. [maxv, ticket #1504] +sys/compat/linux32/arch/amd64/linux32_machdep.c 1.39 + + Fix a ring0 escalation vulnerability in compat_linux32 where the + index of %cs is controlled by userland, making it easy to trigger + the page fault and get kernel privileges. + [maxv, ticket #1507] +