CVE-2009-1630
14.05.2009, 17:30
The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.Enginsight
Vendor | Product | Version |
---|---|---|
linux | linux_kernel | 𝑥 ≤ 2.6.29.3 |
opensuse | opensuse | 11.0 |
opensuse | opensuse | 11.1 |
debian | debian_linux | 4.0 |
debian | debian_linux | 5.0 |
canonical | ubuntu_linux | 6.06 |
canonical | ubuntu_linux | 8.04 |
canonical | ubuntu_linux | 8.10 |
canonical | ubuntu_linux | 9.04 |
vmware | esx | 2.5.5 |
vmware | esx | 3.0.3 |
vmware | esx | 3.5 |
vmware | esx | 4.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References