Количество 28
Количество 28

CVE-2018-13405
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVE-2018-13405
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVE-2018-13405
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.
CVE-2018-13405
The inode_init_owner function in fs/inode.c in the Linux kernel throug ...
GHSA-5p56-pcgw-42mf
The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.
ELSA-2019-0717
ELSA-2019-0717: kernel security and bug fix update (IMPORTANT)

BDU:2022-05860
Уязвимость функции inode_init_owner компонента fs/inode.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

openSUSE-SU-2018:2118-1
Security update for the Linux Kernel

SUSE-SU-2018:2051-1
Security update for the Linux Kernel
ELSA-2018-4211
ELSA-2018-4211: Unbreakable Enterprise kernel security update (IMPORTANT)

SUSE-SU-2018:2150-1
Security update for the Linux Kernel

SUSE-SU-2018:2384-1
Security update for the Linux Kernel

SUSE-SU-2018:2362-1
Security update for the Linux Kernel

SUSE-SU-2018:2222-1
Security update for the Linux Kernel

SUSE-SU-2018:2344-2
Security update for the Linux Kernel

SUSE-SU-2018:2344-1
Security update for the Linux Kernel

SUSE-SU-2021:3748-1
Security update for the Linux Kernel

SUSE-SU-2021:3723-1
Security update for the Linux Kernel

openSUSE-SU-2021:1477-1
Security update for the Linux Kernel

openSUSE-SU-2021:1460-1
Security update for the Linux Kernel
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2018-13405 The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID. | CVSS3: 7.8 | 0% Низкий | почти 7 лет назад |
![]() | CVE-2018-13405 The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID. | CVSS3: 4.4 | 0% Низкий | почти 7 лет назад |
![]() | CVE-2018-13405 The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID. | CVSS3: 7.8 | 0% Низкий | почти 7 лет назад |
CVE-2018-13405 The inode_init_owner function in fs/inode.c in the Linux kernel throug ... | CVSS3: 7.8 | 0% Низкий | почти 7 лет назад | |
GHSA-5p56-pcgw-42mf The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID. | CVSS3: 7.8 | 0% Низкий | около 3 лет назад | |
ELSA-2019-0717 ELSA-2019-0717: kernel security and bug fix update (IMPORTANT) | около 6 лет назад | |||
![]() | BDU:2022-05860 Уязвимость функции inode_init_owner компонента fs/inode.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 7.8 | 0% Низкий | почти 7 лет назад |
![]() | openSUSE-SU-2018:2118-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2018:2051-1 Security update for the Linux Kernel | почти 7 лет назад | ||
ELSA-2018-4211 ELSA-2018-4211: Unbreakable Enterprise kernel security update (IMPORTANT) | почти 7 лет назад | |||
![]() | SUSE-SU-2018:2150-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2018:2384-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2018:2362-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2018:2222-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2018:2344-2 Security update for the Linux Kernel | больше 6 лет назад | ||
![]() | SUSE-SU-2018:2344-1 Security update for the Linux Kernel | почти 7 лет назад | ||
![]() | SUSE-SU-2021:3748-1 Security update for the Linux Kernel | больше 3 лет назад | ||
![]() | SUSE-SU-2021:3723-1 Security update for the Linux Kernel | больше 3 лет назад | ||
![]() | openSUSE-SU-2021:1477-1 Security update for the Linux Kernel | больше 3 лет назад | ||
![]() | openSUSE-SU-2021:1460-1 Security update for the Linux Kernel | больше 3 лет назад |
Уязвимостей на страницу