Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2m7p-qcqr-gfv2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.7

Описание

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.

Ссылки

EPSS

Процентиль: 98%
0.65916
Средний

6.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.7
ubuntu
больше 9 лет назад

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.

redhat
больше 9 лет назад

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.

CVSS3: 6.7
nvd
больше 9 лет назад

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel through 4.3.3 attempts to merge distinct setattr operations, which allows local users to bypass intended access restrictions and modify the attributes of arbitrary overlay files via a crafted application.

CVSS3: 6.7
debian
больше 9 лет назад

The ovl_setattr function in fs/overlayfs/inode.c in the Linux kernel t ...

oracle-oval
почти 9 лет назад

ELSA-2016-3593: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 98%
0.65916
Средний

6.7 Medium

CVSS3