Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3623

Опубликовано: 31 дек. 2005
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:2.6.14.4:*:*:*:*:*:*:*

EPSS

Процентиль: 76%
0.00966
Низкий

5 Medium

CVSS2

Дефекты

CWE-862

Связанные уязвимости

ubuntu
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

redhat
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

debian
больше 19 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR pr ...

github
больше 3 лет назад

nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.

EPSS

Процентиль: 76%
0.00966
Низкий

5 Medium

CVSS2

Дефекты

CWE-862