DragonFlyBSD Kernel Audit
DF-2557 / run.6.log
← back to finding ↓ download raw
[*] receiver SO_PASSCRED = 16384 (sizeof(struct cmsgcred)=84)

=== sample 0: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 49010000 80e56440
    00f8ffff a04fae16 01f8ffff 49010000 00000000 05000000 00000000 80e56440
    00f8ffff a8f6e317 01f8ffff 00000000 00000000 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 35
    >>> sample 0 leaked-non-zero-bytes = 37 / 62 possible

=== sample 1: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 01f8ffff 80e36840
    00f8ffff a04fae16 01f8ffff 99000000 00000000 05000000 00000000 80e36840
    00f8ffff a8f6e317 01f8ffff 00000000 00000000 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 36
    >>> sample 1 leaked-non-zero-bytes = 38 / 62 possible

=== sample 2: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 01f8ffff 25df6b80
    ffffffff 00000000 00000000 c83d9e17 01f8ffff 38f6e317 01f8ffff 65e26b80
    ffffffff 08f7e317 01f8ffff d7586c80 ffffffff 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 52
    >>> sample 2 leaked-non-zero-bytes = 54 / 62 possible

=== sample 3: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 01f8ffff 25df6b80
    ffffffff 00000000 00000000 c83d9e17 01f8ffff 38f6e317 01f8ffff 65e26b80
    ffffffff 08f7e317 01f8ffff d7586c80 ffffffff 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 52
    >>> sample 3 leaked-non-zero-bytes = 54 / 62 possible

=== sample 4: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 01f8ffff 25df6b80
    ffffffff 00000000 00000000 c83d9e17 01f8ffff 38f6e317 01f8ffff 65e26b80
    ffffffff 08f7e317 01f8ffff d7586c80 ffffffff 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 52
    >>> sample 4 leaked-non-zero-bytes = 54 / 62 possible

=== sample 5: data bytes=8, controllen=104 ===
    pid=906 uid=1001 euid=1001 gid=1001 ngroups=1
full 80-byte cmsgcred (as received) (84 bytes):
    8a030000 e9030000 e9030000 e9030000 0100ffff e9030000 01f8ffff 25df6b80
    ffffffff 00000000 00000000 c83d9e17 01f8ffff 38f6e317 01f8ffff 65e26b80
    ffffffff 08f7e317 01f8ffff d7586c80 ffffffff 
    padding bytes [18..20): ffff
    tail groups[1..16) [24..84) non-zero bytes: 52
    >>> sample 5 leaked-non-zero-bytes = 54 / 62 possible

==== SUMMARY over 6 samples: 291 leaked non-zero bytes (of 372 possible) ====
result: LEAK CONFIRMED (kernel-stack residue in synthesized SCM_CREDS)
RUN_EXIT=0