Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hm34-64r3-w24r

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

Ссылки

EPSS

Процентиль: 84%
0.02402
Низкий

8.1 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 8.1
ubuntu
больше 14 лет назад

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

redhat
около 15 лет назад

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

CVSS3: 8.1
nvd
больше 14 лет назад

The xfs implementation in the Linux kernel before 2.6.35 does not look up inode allocation btrees before reading inode buffers, which allows remote authenticated users to read unlinked files, or read or overwrite disk blocks that are currently assigned to an active file but were previously assigned to an unlinked file, by accessing a stale NFS filehandle.

CVSS3: 8.1
debian
больше 14 лет назад

The xfs implementation in the Linux kernel before 2.6.35 does not look ...

oracle-oval
больше 14 лет назад

ELSA-2010-2008: Unbreakable enterprise kernel security update (IMPORTANT)

EPSS

Процентиль: 84%
0.02402
Низкий

8.1 High

CVSS3

Дефекты

CWE-200