CVE Vulnerabilities

CVE-2010-2022

Published: May 28, 2010 | Modified: Jun 01, 2010
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
3.3 LOW
AV:L/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

jail.c in jail in FreeBSD 8.0 and 8.1-PRERELEASE, when the -l -U root options are omitted, does not properly restrict access to the current working directory, which might allow local users to read, modify, or create arbitrary files via standard filesystem operations.

Affected Software

Name Vendor Start Version End Version
Freebsd Freebsd 8.0 (including) 8.0 (including)
Freebsd Freebsd 8.1-prerelease (including) 8.1-prerelease (including)

References