vulnerability

FreeBSD: VID-fefcd340-624f-11ee-8e38-002590c1f29c (CVE-2023-5368): FreeBSD -- msdosfs data disclosure

Severity
7
CVSS
(AV:N/AC:L/Au:S/C:C/I:N/A:N)
Published
Oct 4, 2023
Added
Oct 4, 2023
Modified
Mar 25, 2026

Description

Problem Description: In certain cases using the truncate or ftruncate system call to extend a file size populates the additional space in the file with unallocated data from the underlying disk device, rather than zero bytes. Impact: A user with write access to files on a msdosfs file system may be able to read unintended data (for example, from a previously deleted file).

Solutions

freebsd-upgrade-base-13_2-release-p4freebsd-upgrade-base-12_4-release-p6
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.