Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3gq3-wqjv-f3fj

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

EPSS

Процентиль: 76%
0.00966
Низкий

Дефекты

CWE-862

Связанные уязвимости

ubuntu
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

redhat
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

nvd
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

debian
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR pr ...

EPSS

Процентиль: 76%
0.00966
Низкий

Дефекты

CWE-862