CVE Vulnerabilities

CVE-2010-0318

Published: Jan 15, 2010 | Modified: Aug 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

The replay functionality for ZFS Intent Log (ZIL) in FreeBSD 7.1, 7.2, and 8.0, when creating files during replay of a setattr transaction, uses 7777 permissions instead of the original permissions, which might allow local users to read or modify unauthorized files in opportunistic circumstances after a system crash or power failure.

Affected Software

Name Vendor Start Version End Version
Freebsd Freebsd 7.1 (including) 7.1 (including)
Freebsd Freebsd 7.2 (including) 7.2 (including)
Freebsd Freebsd 8.0 (including) 8.0 (including)

References