nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.
The product does not perform an authorization check when an actor attempts to access a resource or perform an action.
Link | Tags |
---|---|
http://secunia.com/advisories/18788 | broken link third party advisory patch vendor advisory |
http://secunia.com/advisories/19038 | broken link third party advisory patch vendor advisory |
http://www.novell.com/linux/security/advisories/2006_06_kernel.html | vendor advisory broken link |
http://www.redhat.com/support/errata/RHSA-2006-0575.html | vendor advisory broken link |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11707 | vdb entry signature broken link |
http://lkml.org/lkml/2005/12/23/171 | mailing list patch |
http://lists.suse.de/archive/suse-security-announce/2006-Feb/0010.html | broken link patch vendor advisory |
http://secunia.com/advisories/21465 | broken link third party advisory vendor advisory |
http://support.avaya.com/elmodocs2/security/ASA-2006-200.htm | third party advisory |
http://secunia.com/advisories/22417 | broken link third party advisory vendor advisory |
http://www.securityfocus.com/bid/16570 | vdb entry third party advisory broken link |