Vulnerability Name: | CVE-2005-3623 (CCN-25323) | ||||||||||||||||
Assigned: | 2005-12-20 | ||||||||||||||||
Published: | 2005-12-20 | ||||||||||||||||
Updated: | 2017-10-11 | ||||||||||||||||
Summary: | nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems. | ||||||||||||||||
CVSS v3 Severity: | 5.3 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N)
| ||||||||||||||||
CVSS v2 Severity: | 5.0 Medium (CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||||||||||
Vulnerability Type: | CWE-264 | ||||||||||||||||
Vulnerability Consequences: | Bypass Security | ||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2005-3623 Source: SUSE Type: Patch SUSE-SA:2006:012 Source: MISC Type: Patch http://lkml.org/lkml/2005/12/23/171 Source: CCN Type: RHSA-2006-0575 Updated kernel packages available for Red Hat Enterprise Linux 4 Update 4 Source: SECUNIA Type: Patch, Vendor Advisory 18788 Source: SECUNIA Type: Patch, Vendor Advisory 19038 Source: SECUNIA Type: Vendor Advisory 21465 Source: CCN Type: SA22417 Avaya Products Linux Kernel Multiple Vulnerabilities Source: SECUNIA Type: Vendor Advisory 22417 Source: CONFIRM Type: UNKNOWN http://support.avaya.com/elmodocs2/security/ASA-2006-200.htm Source: CCN Type: ASA-2006-200 Updated kernel packages available for Red Hat Enterprise Linux 4 Update 4 (RHSA-2006-0575) Source: SUSE Type: Vendor Advisory SUSE-SA:2006:006 Source: REDHAT Type: UNKNOWN RHSA-2006:0575 Source: BID Type: UNKNOWN 16570 Source: CCN Type: BID-16570 Linux Kernel NFS ACL Access Control Bypass Vulnerability Source: XF Type: UNKNOWN linux-nfs2acl-bypass(25323) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:11707 Source: SUSE Type: SUSE-SA:2006:006 kernel remote denial of service attack | ||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||
Oval Definitions | |||||||||||||||||
| |||||||||||||||||
BACK |