Date: Fri, 28 Oct 2005 15:46:18 -0400 From: Kris Kennaway <kris@obsecurity.org> To: current@FreeBSD.org Cc: kan@FreeBSD.org, jroberson@chesapeake.net, ssouhlal@FreeBSD.org Subject: Null pointer deref in getdirentries() Message-ID: <20051028194618.GA21699@xor.obsecurity.org>
next in thread | raw e-mail | index | archive | help
--HlL+5n6rz5pIUxbD Content-Type: text/plain; charset=us-ascii Content-Disposition: inline UP machine running 6.0. This machine does lots of unmounting, so it's possible rm raced with the umount. Fatal trap 12: page fault while in kernel mode fault virtual address = 0x7b fault code = supervisor read, page not present instruction pointer = 0x20:0xc055d705 stack pointer = 0x28:0xe766bc3c frame pointer = 0x28:0xe766bcd4 code segment = base 0x0, limit 0xfffff, type 0x1b = DPL 0, pres 1, def32 1, gran 1 processor eflags = interrupt enabled, resume, IOPL = 0 current process = 59277 (rm) db> wh Tracing pid 59277 tid 100059 td 0xc6201180 getdirentries(c6201180,e766bd04,10,418,4) at getdirentries+0x75 syscall(c068003b,3b,3b,8050000,805a300) at syscall+0x2c0 Xint0x80_syscall() at Xint0x80_syscall+0x1f --- syscall (196, FreeBSD ELF32, getdirentries), eip = 0x280bec6f, esp = 0xbfbfeb6c, ebp = 0xbfbfeb98 --- Core available. Kris --HlL+5n6rz5pIUxbD Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.2 (FreeBSD) iD8DBQFDYoAKWry0BWjoQKURAlOSAJ0ZLFMk1lfFlGY7a5jR6u2csarE5QCg/q61 QyLqMUiLrD1rvTedd7Jc13o= =abU+ -----END PGP SIGNATURE----- --HlL+5n6rz5pIUxbD--
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20051028194618.GA21699>