Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-1630

Опубликовано: 14 мая 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.4

Описание

The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

hardy

released

2.6.24-24.55
intrepid

released

2.6.27-14.35
jaunty

released

2.6.28-13.45
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

2.6.15-54.77
devel

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 30%
0.00109
Низкий

4.4 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.

nvd
около 16 лет назад

The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.

debian
около 16 лет назад

The nfs_permission function in fs/nfs/dir.c in the NFS client implemen ...

github
около 3 лет назад

The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.

fstec
больше 10 лет назад

Уязвимости операционной системы openSUSE, позволяющие злоумышленнику нарушить доступность защищаемой информации

EPSS

Процентиль: 30%
0.00109
Низкий

4.4 Medium

CVSS2