FatGid: FreeBSD 14.x kernel local privilege escalation

FreeBSD 14.x 커널의 setcred(2) 시스템 콜에서 발생하는 로컬 권한 상승 취약점(CVE-2026-45250)이 공개되었다. 이 버퍼 오버플로우는 권한 검사 이전에 발생하여 비권한 사용자가 루트 권한을 획득할 수 있으며, SMAP/SMEP가 활성화된 환경에서도 zfs.ko 모듈이 로드되어 있으면 공격이 가능하다. 해당 취약점은 2025년 11월에 내부적으로 수정되었고, 2026년 5월에 공식 패치가 배포되어 FreeBSD 14.3, 14.4, 15.0 버전에서 업데이트가 권고된다. 공격 기법은 커널 스택 오버플로우를 이용해 커널 내 함수 포인터를 조작하는 방식으로, FreeBSD 커널 보안에 중대한 영향을 미친다.

https://fatgid.io/

#freebsd #kernel #security #localprivilegeescalation #cve

FatGid - FreeBSD 14.x kernel LPE

A four-byte type, an eight-byte stride, one root shell.

After a recent Linux update, I received the message shown in the image. This is caused by having too many old kernels on your disk. By removing the old kernels using the instructions provided by Jolly Roger, the EFI stub error message will no longer appear.

https://forums.linuxmint.com/viewtopic.php?t=409031

#linux #kernel #efi #stub #grub

/* Most the code here is 99.9993422% unused. I hope there are no bugs. But what .. HPFS.IFS has also bugs in ea management. */

https://github.com/torvalds/linux/blob/v7.0/fs/hpfs/ea.c#L265-L266

#linux #kernel #hpfs

linux/fs/hpfs/ea.c at v7.0 · torvalds/linux

Linux kernel source tree. Contribute to torvalds/linux development by creating an account on GitHub.

GitHub
Audio problem in Ubuntu

I have installed Ubuntu 24.04 on a new system Lenovo M90a Pro Gen 4 Desktop (ThinkCenter). Everything works fine except the sound from internal audio speakers. I can hear sound through Bluetooth

Ask Ubuntu

[$] BPF support in GCC 16 and beyond

José Marchesi and the GCC-BPF developers opened the BPF track at the 2026 Linux Storage, Filesystem, Memory-management, and BPF Summit with a 90-minute summary of what has changed [...]

https://lwn.net/Articles/1071973/ #LWN #Linux #kernel #Gentoo #GCC #LLVM #Clang #systemd #BPF #LSFMMBPF

🚀🔐 Oh joy, yet another thrilling tale of privilege escalation in the #FreeBSD 14.x kernel! Apparently, four bytes and a bit of oversight is all it takes to achieve root status because... who needs #security, right? 🤦‍♂️ Expect the usual #GitHub proof-of-concept, because nothing screams "fix me" like a public exploit! 🐑💥
https://fatgid.io/ #privilegeEscalation #vulnerability #kernel #exploit #HackerNews #ngated
FatGid - FreeBSD 14.x kernel LPE

A four-byte type, an eight-byte stride, one root shell.

FatGid: FreeBSD 14.x kernel local privilege escalation

https://fatgid.io/

#HackerNews #FatGid #FreeBSD #kernel #privilege #escalation #cybersecurity #open-source #technews

FatGid - FreeBSD 14.x kernel LPE

A four-byte type, an eight-byte stride, one root shell.

FatGid - FreeBSD 14.x kernel LPE

https://fatgid.io/

#Security #FreeBSD #Kernel

FatGid - FreeBSD 14.x kernel LPE

A four-byte type, an eight-byte stride, one root shell.

[$] Support for private memory nodes

Gregory Price started his session in the memory-management track of the 2026 Linux Storage, Filesystem, Memory Management, and BPF Summit by saying that, in current kernels, if a N [...]

https://lwn.net/Articles/1072881/ #LWN #Linux #kernel #BPF