From owner-freebsd-security@FreeBSD.ORG  Wed Mar 14 08:04:34 2007
Return-Path: <owner-freebsd-security@FreeBSD.ORG>
X-Original-To: freebsd-security@freebsd.org
Delivered-To: freebsd-security@freebsd.org
Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52])
	by hub.freebsd.org (Postfix) with ESMTP id 565F016A403;
	Wed, 14 Mar 2007 08:04:34 +0000 (UTC)
	(envelope-from rea-fbsd@codelabs.ru)
Received: from pobox.codelabs.ru (pobox.codelabs.ru [144.206.177.45])
	by mx1.freebsd.org (Postfix) with ESMTP id 1848C13C455;
	Wed, 14 Mar 2007 08:04:33 +0000 (UTC)
	(envelope-from rea-fbsd@codelabs.ru)
Received: from codelabs.ru (pobox.codelabs.ru [144.206.177.45])
	by pobox.codelabs.ru with esmtpsa (TLSv1:AES256-SHA:256)
	id 1HROAd-0001Ut-Iq; Wed, 14 Mar 2007 10:45:15 +0300
Date: Wed, 14 Mar 2007 10:45:11 +0300
From: Eygene Ryabinkin <rea-fbsd@codelabs.ru>
To: freebsd-security@freebsd.org
Message-ID: <20070314074510.GH99047@codelabs.ru>
MIME-Version: 1.0
Content-Type: text/plain; charset=koi8-r
Content-Disposition: inline
Sender: rea-fbsd@codelabs.ru
X-Spam-Status: No, score=-2.1 required=4.0 tests=ALL_TRUSTED,AWL,BAYES_50
Cc: rwatson@freebsd.org
Subject: OpenBSD IPv6 remote kernel buffer overflow. FreeBSD has this too?
X-BeenThere: freebsd-security@freebsd.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: "Security issues \[members-only posting\]"
	<freebsd-security.freebsd.org>
List-Unsubscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-security>, 
	<mailto:freebsd-security-request@freebsd.org?subject=unsubscribe>
List-Archive: <http://lists.freebsd.org/pipermail/freebsd-security>
List-Post: <mailto:freebsd-security@freebsd.org>
List-Help: <mailto:freebsd-security-request@freebsd.org?subject=help>
List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-security>, 
	<mailto:freebsd-security-request@freebsd.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Mar 2007 08:04:34 -0000

Good day.

Just spotted the new advisory from CORE:
	http://www.securityfocus.com/archive/1/462728/30/0/threaded
Not an expert, but FreeBSD's src/sys/kern/uipc_mbuf2.c has the very
simular code.

Robert, anyone, could you please check?

Thank you.
-- 
Eygene