nfs2acl.c in the Linux kernel 2.6.14.4 does not check for MAY_SATTR privilege before setting access controls (ACL) on files on exported NFS filesystems, which allows remote attackers to bypass ACLs for readonly mounted NFS filesystems.
References
Configurations
History
No history.
Information
Published : 2005-12-31 05:00
Updated : 2025-04-03 01:03
NVD link : CVE-2005-3623
Mitre link : CVE-2005-3623
CVE.ORG link : CVE-2005-3623
JSON object : View
Products Affected
linux
- linux_kernel
CWE
CWE-862
Missing Authorization