CVE-2004-0667

Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and sys_mknod inside jails, which could allow local users to gain elevated privileges.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:rsbac:rule_set_based_access_control:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:rsbac:rule_set_based_access_control:1.2.3:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:gentoo:linux:1.4:*:*:*:*:*:*:*

History

20 Nov 2024, 23:49

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=108861182906067&w=2 - Mailing List () http://marc.info/?l=bugtraq&m=108861182906067&w=2 - Mailing List
References () http://marc.info/?l=bugtraq&m=108879977120430&w=2 - Mailing List () http://marc.info/?l=bugtraq&m=108879977120430&w=2 - Mailing List
References () http://www.rsbac.org/download/bugfixes/ - Vendor Advisory () http://www.rsbac.org/download/bugfixes/ - Vendor Advisory
References () http://www.securityfocus.com/bid/10640 - Patch, Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/10640 - Patch, Third Party Advisory, VDB Entry
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/16552 - Third Party Advisory, VDB Entry () https://exchange.xforce.ibmcloud.com/vulnerabilities/16552 - Third Party Advisory, VDB Entry

20 Jun 2023, 17:45

Type Values Removed Values Added
First Time Rsbac rule Set Based Access Control
CPE cpe:2.3:a:rsbac:rsbac:1.2.3:*:*:*:*:*:*:*
cpe:2.3:a:rsbac:rsbac:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:rsbac:rule_set_based_access_control:1.2.2:*:*:*:*:*:*:*
cpe:2.3:a:rsbac:rule_set_based_access_control:1.2.3:*:*:*:*:*:*:*
References (CONFIRM) http://www.rsbac.org/download/bugfixes/ - (CONFIRM) http://www.rsbac.org/download/bugfixes/ - Vendor Advisory
References (BID) http://www.securityfocus.com/bid/10640 - Patch, Vendor Advisory (BID) http://www.securityfocus.com/bid/10640 - Patch, Third Party Advisory, VDB Entry
References (BUGTRAQ) http://marc.info/?l=bugtraq&m=108879977120430&w=2 - (BUGTRAQ) http://marc.info/?l=bugtraq&m=108879977120430&w=2 - Mailing List
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/16552 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/16552 - Third Party Advisory, VDB Entry
References (BUGTRAQ) http://marc.info/?l=bugtraq&m=108861182906067&w=2 - (BUGTRAQ) http://marc.info/?l=bugtraq&m=108861182906067&w=2 - Mailing List

Information

Published : 2004-08-06 04:00

Updated : 2024-11-20 23:49


NVD link : CVE-2004-0667

Mitre link : CVE-2004-0667

CVE.ORG link : CVE-2004-0667


JSON object : View

Products Affected

gentoo

  • linux

rsbac

  • rule_set_based_access_control