Post B6A96aBEI3oMK11BS4 by dotstdy@mastodon.social
(DIR) More posts by dotstdy@mastodon.social
(DIR) Post #B6A96ZqJXp55H9ETqq by dotstdy@mastodon.social
0 likes, 2 repeats
https://cgit.freebsd.org/src/commit/sys/kern/kern_exec.c?id=8e8ddb05d07142e95cf84e32bf93b9ecb3f90283 get ur daily rust appreciation exploit. today it's a bsd!
(DIR) Post #B6A96aBEI3oMK11BS4 by dotstdy@mastodon.social
0 likes, 0 repeats
this vulnerability was i believe found by an llm (filtered by a human), then has a vibe coded root privilege exploit attached. it's mentioned as a "operator precedence bug" but I can't say I'd really categorize it that way. they messed up the write size calculation and it leads to a tremendous out-of-bounds write. you can fix it by changing precedence, but you can also fix it by changing a + to a -.