Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pxr6-gr2r-cc6x

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option.

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option.

Ссылки

EPSS

Процентиль: 73%
0.00801
Низкий

Связанные уязвимости

ubuntu
больше 16 лет назад

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option.

redhat
больше 16 лет назад

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option.

nvd
больше 16 лет назад

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option.

debian
больше 16 лет назад

nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD c ...

fstec
больше 10 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить целостность защищаемой информации

EPSS

Процентиль: 73%
0.00801
Низкий