The jail(2) system call has not... CVE-2024-25941

- AV AC AU C I A
发布: 2024-02-15
修订: 2024-02-15

The jail(2) system call has not limited a visiblity of allocated TTYs (the kern.ttys sysctl). This gives rise to an information leak about processes outside the current jail. Attacker can get information about TTYs allocated on the host or in other jails. Effectively, the information printed by "pstat -t" may be leaked.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息