Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fjrg-6rx6-hx77

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an "os2." substring at the beginning of a name.

fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an "os2." substring at the beginning of a name.

EPSS

Процентиль: 35%
0.00426
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 16 лет назад

fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an "os2." substring at the beginning of a name.

nvd
почти 16 лет назад

fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly handle a certain legacy format for storage of extended attributes, which might allow local users by bypass intended xattr namespace restrictions via an "os2." substring at the beginning of a name.

debian
почти 16 лет назад

fs/jfs/xattr.c in the Linux kernel before 2.6.35.2 does not properly h ...

fstec
около 16 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

fstec
больше 11 лет назад

Уязвимости операционной системы SUSE Linux Enterprise, позволяющие злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 35%
0.00426
Низкий

Дефекты

CWE-20