FreeBSD : FreeBSD -- Lost mbuf flag resulting in data corruption (7a09a8df-ca41-11df-aade-0050568f000c)

High Nessus Plugin ID 50334


The remote FreeBSD host is missing one or more security-related updates.


The read-only flag is not correctly copied when a mbuf buffer reference is duplicated. When the sendfile(2) system call is used to transmit data over the loopback interface, this can result in the backing pages for the transmitted file being modified, causing data corruption.


Update the affected packages.

See Also

Plugin Details

Severity: High

ID: 50334

File Name: freebsd_pkg_7a09a8dfca4111dfaade0050568f000c.nasl

Version: $Revision: 1.7 $

Type: local

Published: 2010/10/26

Modified: 2016/08/10

Dependencies: 12634

Risk Information

Risk Factor: High

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:FreeBSD, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info, Settings/ParanoidReport

Patch Publication Date: 2010/10/24

Vulnerability Publication Date: 2010/07/13

Reference Information

OSVDB: 66316

FreeBSD: SA-10:07.mbuf