Oval Definition:oval:org.mitre.oval:def:8543
Revision Date:2014-01-20Version:5
Title:VMware kernel nfs_permission function vulnerability
Description:The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.
Family:unixClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-1630
Platform(s):VMWare ESX Server 4.0
Product(s):
Definition Synopsis
  • VMware ESX Server 4.0 is installed
  • AND Patch ESX400-200911201-UG is not installed
  • BACK