Логотип exploitDog
bind:CVE-2018-13405
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-13405

Количество 28

Количество 28

ubuntu логотип

CVE-2018-13405

почти 7 лет назад

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
EPSS: Низкий
redhat логотип

CVE-2018-13405

почти 7 лет назад

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 4.4
EPSS: Низкий
nvd логотип

CVE-2018-13405

почти 7 лет назад

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2018-13405

почти 7 лет назад

The inode_init_owner function in fs/inode.c in the Linux kernel throug ...

CVSS3: 7.8
EPSS: Низкий
github логотип

GHSA-5p56-pcgw-42mf

около 3 лет назад

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
EPSS: Низкий
oracle-oval логотип

ELSA-2019-0717

около 6 лет назад

ELSA-2019-0717: kernel security and bug fix update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2022-05860

почти 7 лет назад

Уязвимость функции inode_init_owner компонента fs/inode.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2018:2118-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2051-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
oracle-oval логотип

ELSA-2018-4211

почти 7 лет назад

ELSA-2018-4211: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2150-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2384-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2362-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2222-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2344-2

больше 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:2344-1

почти 7 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3748-1

больше 3 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:3723-1

больше 3 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1477-1

больше 3 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1460-1

больше 3 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-13405

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
0%
Низкий
почти 7 лет назад
redhat логотип
CVE-2018-13405

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 4.4
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2018-13405

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2018-13405

The inode_init_owner function in fs/inode.c in the Linux kernel throug ...

CVSS3: 7.8
0%
Низкий
почти 7 лет назад
github логотип
GHSA-5p56-pcgw-42mf

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

CVSS3: 7.8
0%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2019-0717

ELSA-2019-0717: kernel security and bug fix update (IMPORTANT)

около 6 лет назад
fstec логотип
BDU:2022-05860

Уязвимость функции inode_init_owner компонента fs/inode.c ядра операционной системы Linux, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
0%
Низкий
почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2018:2118-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2051-1

Security update for the Linux Kernel

почти 7 лет назад
oracle-oval логотип
ELSA-2018-4211

ELSA-2018-4211: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2150-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2384-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2362-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2222-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:2344-2

Security update for the Linux Kernel

больше 6 лет назад
suse-cvrf логотип
SUSE-SU-2018:2344-1

Security update for the Linux Kernel

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2021:3748-1

Security update for the Linux Kernel

больше 3 лет назад
suse-cvrf логотип
SUSE-SU-2021:3723-1

Security update for the Linux Kernel

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1477-1

Security update for the Linux Kernel

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1460-1

Security update for the Linux Kernel

больше 3 лет назад

Уязвимостей на страницу