Vulnerability Name:

CVE-2014-9710 (CCN-101789)

Assigned:2015-03-24
Published:2015-03-24
Updated:2016-12-31
Summary:The Btrfs implementation in the Linux kernel before 3.19 does not ensure that the visible xattr state is consistent with a requested replacement, which allows local users to bypass intended ACL settings and gain privileges via standard filesystem operations (1) during an xattr-replacement time window, related to a race condition, or (2) after an xattr-replacement attempt that fails because the data does not fit.
CVSS v3 Severity:5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): Low
Integrity (I): Low
Availibility (A): Low
CVSS v2 Severity:6.9 Medium (CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C)
5.1 Medium (Temporal CVSS v2 Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
4.6 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
3.4 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
Vulnerability Type:CWE-362
Vulnerability Consequences:Gain Privileges
References:Source: MITRE
Type: CNA
CVE-2014-9710

Source: CONFIRM
Type: UNKNOWN
http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=5f5bc6b1e2d5a6f827bc860ef2dc5b6f365d1339

Source: SUSE
Type: UNKNOWN
SUSE-SU-2015:1224

Source: SUSE
Type: UNKNOWN
SUSE-SU-2015:1489

Source: CCN
Type: oss-security Mailing List, Tue, 24 Mar 2015 14:02:00 +0530 (IST)
CVE request Linux kernel: fs: btrfs: non-atomic xattr replace operation

Source: CCN
Type: oss-security Mailing List, Tue, 24 Mar 2015 12:51:00 -0400 (EDT)
Re: CVE request Linux kernel: fs: btrfs: non-atomic xattr replace operation

Source: CCN
Type: IBM Security Bulletin T1022487
PowerKVM is affected by Linux Kernel vulnerabilities (multiple CVEs)

Source: MLIST
Type: UNKNOWN
[oss-security] 20150324 CVE request Linux kernel: fs: btrfs: non-atomic xattr replace operation

Source: CCN
Type: BID-73308
Linux Kernel 'btrfs/ctree.c' Local Privilege Escalation Vulnerability

Source: SECTRACK
Type: UNKNOWN
1032418

Source: CONFIRM
Type: UNKNOWN
https://bugzilla.redhat.com/show_bug.cgi?id=1205079

Source: XF
Type: UNKNOWN
linux-kernel-btrfs-priv-esc(101789)

Source: CCN
Type: Linux Kernel GIT Repository
Btrfs: make xattr replace operations atomic

Source: CONFIRM
Type: UNKNOWN
https://github.com/torvalds/linux/commit/5f5bc6b1e2d5a6f827bc860ef2dc5b6f365d1339

Vulnerable Configuration:Configuration 1:
  • cpe:/o:linux:linux_kernel:*:*:*:*:*:*:*:* (Version <= 3.18.8)

  • Configuration CCN 1:
  • cpe:/a:accelatech:bizsearch:3.2:-:*:*:*:linux_kernel:*:*
  • AND
  • cpe:/a:ibm:powerkvm:2.1:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    Oval Definitions
    Definition IDClassTitleLast Modified
    oval:org.opensuse.security:def:20149710
    V
    CVE-2014-9710
    2022-08-07
    oval:org.opensuse.security:def:35293
    P
    Security update for openexr (Important)
    2022-01-12
    oval:org.opensuse.security:def:30170
    P
    Security update for net-snmp (Important)
    2022-01-05
    oval:org.opensuse.security:def:34053
    P
    Security update for libsndfile (Important)
    2022-01-05
    oval:org.opensuse.security:def:30274
    P
    Security update for xen (Moderate)
    2021-11-29
    oval:org.opensuse.security:def:31310
    P
    Security update for webkit2gtk3 (Important)
    2021-11-23
    oval:org.opensuse.security:def:31289
    P
    Security update for the Linux Kernel (Live Patch 37 for SLE 12 SP3) (Important)
    2021-10-18
    oval:org.opensuse.security:def:34560
    P
    Security update for apache2-mod_auth_openidc (Moderate)
    2021-10-12
    oval:org.opensuse.security:def:34548
    P
    Security update for hivex (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:34549
    P
    Security update for gd (Moderate)
    2021-09-23
    oval:org.opensuse.security:def:33964
    P
    Security update for unrar (Moderate)
    2021-08-25
    oval:org.opensuse.security:def:31250
    P
    Security update for openssl (Important)
    2021-08-24
    oval:org.opensuse.security:def:14032
    P
    shim-0.9-20.3 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:14054
    P
    vsftpd-3.0.2-31.1 on GA media (Moderate)
    2021-08-16
    oval:org.opensuse.security:def:30225
    P
    Security update for qemu (Moderate)
    2021-07-21
    oval:org.opensuse.security:def:33675
    P
    Security update for apache2 (Important)
    2021-06-17
    oval:org.opensuse.security:def:13302
    P
    gdk-pixbuf-lang-2.30.6-1.17 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:36082
    P
    apache2-2.2.12-1.51.52.1 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13381
    P
    libopenssl1_0_0-1.0.1i-2.12 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13327
    P
    kernel-default-3.12.28-4.3 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13394
    P
    librpcsecgss3-0.19-16.54 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:13371
    P
    liblcms1-1.19-17.28 on GA media (Moderate)
    2021-06-08
    oval:org.opensuse.security:def:33907
    P
    Security update for djvulibre (Important)
    2021-05-19
    oval:org.opensuse.security:def:34425
    P
    Security update for python36 (Moderate)
    2021-05-04
    oval:org.opensuse.security:def:35244
    P
    Security update for openexr (Moderate)
    2021-04-07
    oval:org.opensuse.security:def:31145
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP3) (Important)
    2021-04-07
    oval:org.opensuse.security:def:31354
    P
    Security update for wpa_supplicant (Important)
    2021-03-09
    oval:org.opensuse.security:def:34644
    P
    Security update for grub2 (Important)
    2021-03-02
    oval:org.opensuse.security:def:30017
    P
    Security update for the Linux Kernel (Live Patch 36 for SLE 12 SP2) (Important)
    2021-02-10
    oval:org.opensuse.security:def:31201
    P
    Security update for ImageMagick (Important)
    2021-01-22
    oval:org.opensuse.security:def:13096
    P
    libwavpack1-4.60.99-5.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13066
    P
    libsndfile1-1.0.25-36.16.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13208
    P
    vsftpd-3.0.2-40.11.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13145
    P
    perl-YAML-LibYAML-0.38-10.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13074
    P
    libssh2-1-1.4.3-20.9.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13227
    P
    yubikey-manager-0.6.0-1.27 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:36041
    P
    system-config-printer-1.0.8-9.23.44 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:13192
    P
    sysvinit-tools-2.88+-101.3.1 on GA media (Moderate)
    2020-12-03
    oval:org.opensuse.security:def:29582
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31051
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:30756
    P
    Security update for apache2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30539
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:35026
    P
    Security update for gtk2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30376
    P
    Security update for wpa_supplicant
    2020-12-01
    oval:org.opensuse.security:def:29874
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:34356
    P
    Security update for syslog-ng (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30550
    P
    Security update for KVM
    2020-12-01
    oval:org.opensuse.security:def:34210
    P
    Security update for perl-XML-LibXML (Important)
    2020-12-01
    oval:org.opensuse.security:def:32030
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:33580
    P
    Security update for MozillaFirefox, MozillaFirefox-branding-SLED, mozilla-nspr and mozilla-nss (Important)
    2020-12-01
    oval:org.opensuse.security:def:30990
    P
    Security update for jakarta-commons-fileupload
    2020-12-01
    oval:org.opensuse.security:def:35403
    P
    Security update for openssh (Critical)
    2020-12-01
    oval:org.opensuse.security:def:34879
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30313
    P
    Security update for tcpdump (Important)
    2020-12-01
    oval:org.opensuse.security:def:29655
    P
    Security update for curl (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33581
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:35063
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:29570
    P
    Security update for SuSEfirewall2 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30846
    P
    Security update for dbus-1 (Important)
    2020-12-01
    oval:org.opensuse.security:def:35332
    P
    Security update for mono-core (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:35185
    P
    Security update for kvm (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:31014
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:29931
    P
    Security update for libgdiplus0
    2020-12-01
    oval:org.opensuse.security:def:34381
    P
    Security update for tomcat6 (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33811
    P
    Security update for ghostscript-library (Important)
    2020-12-01
    oval:org.opensuse.security:def:30624
    P
    Security update for xen (Important)
    2020-12-01
    oval:org.opensuse.security:def:34268
    P
    Security update for procmail (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:30538
    P
    Security update for java-1_7_0-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:34936
    P
    Security update for MozillaFirefox
    2020-12-01
    oval:org.opensuse.security:def:30332
    P
    Security update for tomcat6 (Important)
    2020-12-01
    oval:org.opensuse.security:def:29787
    P
    Security update for graphviz (Low)
    2020-12-01
    oval:org.opensuse.security:def:34317
    P
    Security update for rzsz (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:33592
    P
    Security update for MozillaFirefox (Important)
    2020-12-01
    oval:org.opensuse.security:def:35103
    P
    Security update for the Linux Kernel (Important)
    2020-12-01
    oval:org.opensuse.security:def:29571
    P
    Security update for adns (Important)
    2020-12-01
    oval:org.opensuse.security:def:31992
    P
    Security update for java-1_7_1-ibm (Important)
    2020-12-01
    oval:org.opensuse.security:def:30903
    P
    Security update for fontconfig (Low)
    2020-12-01
    oval:org.opensuse.security:def:35359
    P
    Security update for nagios (Moderate)
    2020-12-01
    oval:org.opensuse.security:def:34780
    P
    Security update for Mozilla Firefox
    2020-12-01
    oval:com.ubuntu.precise:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 12.04 LTS (precise) - low.
    2015-05-27
    oval:com.ubuntu.xenial:def:201497100000000
    V
    CVE-2014-9710 on Ubuntu 16.04 LTS (xenial) - low.
    2015-05-27
    oval:com.ubuntu.trusty:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 14.04 LTS (trusty) - low.
    2015-05-27
    oval:com.ubuntu.xenial:def:20149710000
    V
    CVE-2014-9710 on Ubuntu 16.04 LTS (xenial) - low.
    2015-05-27
    BACK
    linux linux kernel *
    accelatech bizsearch 3.2 -
    ibm powerkvm 2.1