Quick block post about a stupid, probably not exploitable, bug in NTFS still present in Windows 10 2004. https://www.tiraniddo.dev/2020/05/writing-windows-file-system-drivers-is.html …
-
-
Replying to @tiraniddo
Microsoft still hasn't yet fixed all of the fuzzed NTFS cases I sent them a year ago. Possibly because they were also deemed to be not exploitable. But it still sort of sucks that a standard USB mass storage device can panic a system when plugged in.pic.twitter.com/Ia4gmwh97Z
4 replies 2 retweets 21 likes
Replying to @wdormann @tiraniddo
Will Dormann Retweeted Will Dormann
But before Linux folks start snickering, let it be known that the EXT filesystems BY DESIGN allow the plugged-in filesystem itself to determine if it would like the machine it's plugged into to panic or not.https://twitter.com/wdormann/status/1164551415047565313 …
Will Dormann added,
Will Dormann @wdormann
Since this is public documented behavior, I see no reason to embargo this. I present for you a story in two parts.
That's right, the untrusted filesystem itself gets to decide the kernel-level behavior "if" the filesystem contains an error. You will now panic because I said so. pic.twitter.com/7uA1gnnwfx
Show this thread
3:48 PM - 20 May 2020
0 replies
4 retweets
11 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.