CVE-2009-1630
The nfs_permission function in fs/nfs/dir.c in the NFS client implementation in the Linux kernel 2.6.29.3 and earlier, when atomic_open is available, does not check execute (aka EXEC or MAY_EXEC) permission bits, which allows local users to bypass permissions and execute files, as demonstrated by files on an NFSv4 fileserver.
- Affected products
- Linux Kernel, Red Hat, Suse Linux Enterprise, Opensuse
- Linux Linux Kernel
- ≤ 2.6.29.3
- CVSS 2.0
- 4.4 MEDIUM
- EPSS
- 0.5% (40th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2009-05-14
CVE-2009-1630 at NVD
1 known exploit for CVE-2009-1630
Proof-of-concept code and exploit modules indexed by Sploitus