From nobody Wed Apr 06 18:33:09 2022 X-Original-To: bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id C0C1D1A86770 for ; Wed, 6 Apr 2022 18:33:09 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4KYY6Y4Lmxz3j8M for ; Wed, 6 Apr 2022 18:33:09 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 75A56203F2 for ; Wed, 6 Apr 2022 18:33:09 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 236IX9u1013646 for ; Wed, 6 Apr 2022 18:33:09 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from bugzilla@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 236IX9Xw013645 for bugs@FreeBSD.org; Wed, 6 Apr 2022 18:33:09 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: bugzilla set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: bugs@FreeBSD.org Subject: [Bug 263043] malformed SMB reply can page-fault the kernel in smb_t2_placedata() Date: Wed, 06 Apr 2022 18:33:09 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Base System X-Bugzilla-Component: kern X-Bugzilla-Version: Unspecified X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Some People X-Bugzilla-Who: commit-hook@FreeBSD.org X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: bugs@FreeBSD.org X-Bugzilla-Flags: X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Type: text/plain; charset="UTF-8" Content-Transfer-Encoding: quoted-printable X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-bugs@freebsd.org MIME-Version: 1.0 ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1649269989; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=piIuK8ccamq7p/I3MWJJaGHKdiNBwYQ/fU+kv7qgJso=; b=fHwCswgu2jx1+hZeVsnEOhbVqrwtaGHsl5U21cJNKjN8Xcu28KuG8aZRC2m0ybhAtVyksr LAmkOG9H2A2wEzFXpTd5TbiL2xT+crTsuuaME6na2rC7jOwlxjFHvhpl4yHhDH2X8Uj6eG 4iP5+wRzGn61oRcZj4be5mk1emM3b/6jpf955E9yINOscjkGzXRmdUDQdEZIQ4jaqOVWmi nqztihvVF11+PgmENsT7LRbb4c7HPRL/LtUGGlzKanKyAQaEVbF/Fjhp/05LSQMywqT4Qr +tpPVY/WldIflmbhwYRaNjfwtVrBbsfJmf6hW9aHFKVryAq83qKwTVZGRAn0pw== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1649269989; a=rsa-sha256; cv=none; b=tym6EzfzcAIWncTc7rO3LYeY7sjGSR9F1rxpgyB8PnyXLA+Crw0XAUePZ/VLkK+fAStRCV mq5NrvCD/WO4LdKR1bbfsikskWN68k5uZbeLQHOY5ai79EFluWgdvMtMI4jokcK4rfzn0U 3kERG7xiGA9xCMPT8ZGW/7OytB8rNPV0vAkOLqxxLfhSTfXajCT4deD2yu1OqTmee1vftH m/adbQzvHlDkJ5KlOBAxkygm4U2WFe4TdmprqG/kTkt9J1jEIS5UhwciAvhrPFgKpKdBD8 Ump/hn3HFfxRLuPiuu/Dqckhz/Jvif4mtCFsEiazYmHtkc8UARCQ/53LNtLxAw== ARC-Authentication-Results: i=1; mx1.freebsd.org; none X-ThisMailContainsUnwantedMimeParts: N https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D263043 --- Comment #1 from commit-hook@FreeBSD.org --- A commit in branch main references this bug: URL: https://cgit.FreeBSD.org/src/commit/?id=3D7c140ef034c33ab0b16b535f3d5f945dc= 8f71cb4 commit 7c140ef034c33ab0b16b535f3d5f945dc8f71cb4 Author: Ed Maste AuthorDate: 2022-04-06 18:25:37 +0000 Commit: Ed Maste CommitDate: 2022-04-06 18:32:09 +0000 smbfs: caution against use in the manpage It supports only the obsolete SMBv1 protocol, is known to be buggy, and likely has security vulnerabilities. It will either be updated or removed in the future, but for now at least describe the current state in the man page. PR: 263043 MFC after: 3 days Sponsored by: The FreeBSD Foundation share/man/man5/smbfs.5 | 21 ++++++++++++++++++++- 1 file changed, 20 insertions(+), 1 deletion(-) --=20 You are receiving this mail because: You are the assignee for the bug.=