Bugs in other places found thanks to junixsocket
Thanks to junixsocket development, as well as due to running the selftest suite, several bugs in other projects and platforms (even kernels) have been found.
Here is an incomplete list.
-
IBM AIX: AIX is vulnerable to privilege escalation (CVE-2024-27273, CVSS Base score: 8.1)
SO_PEERID
was incompletely implemented for datagrams, resulting in uid/gid=0 for all users -
IBM i
A backwards-incompatible change was introduced in JDK 15 OpenJ9 issue 9788
-
FreeBSD
Linuxulator bug 277118
-
Haiku OS
-
Java: JDK-8335600, JDK-8316703
-
GraalVM: issue 547
-
Maven: MINSTALL-201, MNG-8178, MJLINK-82,
-
PMD: issue 4620, issue 4609
More about junixsocket's own issues can be found in the junixsocket bug tracker.