Логотип exploitDog
bind:CVE-2014-8989
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-8989

Количество 6

Количество 6

ubuntu логотип

CVE-2014-8989

почти 11 лет назад

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 4.6
EPSS: Низкий
redhat логотип

CVE-2014-8989

почти 11 лет назад

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2014-8989

почти 11 лет назад

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 4.6
EPSS: Низкий
debian логотип

CVE-2014-8989

почти 11 лет назад

The Linux kernel through 3.17.4 does not properly restrict dropping of ...

CVSS2: 4.6
EPSS: Низкий
github логотип

GHSA-86g9-4xm6-2vw3

больше 3 лет назад

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

EPSS: Низкий
oracle-oval логотип

ELSA-2015-3064

около 10 лет назад

ELSA-2015-3064: Unbreakable Enterprise kernel security , bug fix and enhancement update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2014-8989

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 4.6
0%
Низкий
почти 11 лет назад
redhat логотип
CVE-2014-8989

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 3.6
0%
Низкий
почти 11 лет назад
nvd логотип
CVE-2014-8989

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

CVSS2: 4.6
0%
Низкий
почти 11 лет назад
debian логотип
CVE-2014-8989

The Linux kernel through 3.17.4 does not properly restrict dropping of ...

CVSS2: 4.6
0%
Низкий
почти 11 лет назад
github логотип
GHSA-86g9-4xm6-2vw3

The Linux kernel through 3.17.4 does not properly restrict dropping of supplemental group memberships in certain namespace scenarios, which allows local users to bypass intended file permissions by leveraging a POSIX ACL containing an entry for the group category that is more restrictive than the entry for the other category, aka a "negative groups" issue, related to kernel/groups.c, kernel/uid16.c, and kernel/user_namespace.c.

0%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2015-3064

ELSA-2015-3064: Unbreakable Enterprise kernel security , bug fix and enhancement update (IMPORTANT)

около 10 лет назад

Уязвимостей на страницу