Secunia
|
|

CVE Reference: CVE-2005-3623 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2005-3623 |
|
|
Description: nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems. |
|
|
CVE Status: Candidate |
|
|
References: SUSE http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html http://www.novell.com/linux/security/advisories/2006_06_kernel.html SAID Secunia Advisory: SA18788 Secunia Advisory: SA19038 Secunia Advisory: SA21465 Secunia Advisory: SA22417 REDHAT http://www.redhat.com/support/errata/RHSA-2006-0575.html OVAL http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11707 MISC http://lkml.org/lkml/2005/12/23/171 CONFIRM http://support.avaya.com/elmodocs2/security/ASA-2006-200.htm BID 16570 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |