Some cool #XNU #bugs by @adamd
CVE-2022-42845: 20-Year-Old XNU Use After Free Vulnerability in ndrv.c
http://adamdoupe.com/blog/2022/12/13/cve-2022-42845-xnu-use-after-free-vulnerability-in-ndrv-dot-c/
CVE-2023-23504: XNU Heap Underwrite in dlil.c
http://adamdoupe.com/blog/2023/01/23/cve-2023-23504-xnu-heap-underwrite-in-dlil-dot-c/
Here’s another #vulnerability #research writeup, this time about the #xnu #kernel
// by @pwningsystems
A tale of a simple #Apple kernel bug
https://pwning.systems/posts/easy-apple-kernel-bug/
#vulnerability #research #xnu #kernel #apple
@juandesant @dataandpolitics @glennf
1. The kernel (#xnu) was amalgamation of code that was mostly independent of NeXT. #NeXTSTEP was based on Mach 2.5 & 4.3BSD with an ObjC based DriverKit. xnu was built from #osfmk which was Mach 3.0 and ported to Mac HW as part of the #MkLinux project, a fresh rebase of 4.4BSD-Lites2, and the driver system (#IOKit) was a ground up redesign, despite the existence of DriverKit and NuIO.
2/7
#xnu #nextstep #osfmk #mklinux #iokit
Apple does have an obsession with photos. I really don’t understand why I need so many gigs of them on my iPad and iPhone when the system knows I rarely if ever look at anything except the last few ones without internet.
So why remove my books… when I read them constantly.
---
RT @Morpheus______@twitter.com
#MacOS 15 Beta 2.. #XNU at 6110, and kernel changes continue...
Oh, and - everything looks like photos :-P
https://twitter.com/Morpheus______/status/1140691475782651904
Finally, source of High Sierra's kernel is up:
http://xr.anadoxin.org/source/xref/macos-10.13-highsierra/xnu-4570.1.46/
Happy diff-ing ;)
#macos #xnu #kernel #development