kernel

Page content
  • Author: Miklos Vajna
  • Vulnerable: 2.6.32-3
  • Unaffected: 2.6.32-4locris1

A vulnerability has been reported in the Linux Kernel, which can be exploited by malicious, local users to bypass certain security restrictions. The vulnerability is caused due to the ReiserFS file system implementation not properly restricting access to the “.reiserfs_priv” directory, which can be exploited to e.g. gain root privileges by modifying ACLs or extended attributes. Successful exploitation requires that the ReiserFS file system is used.

CVEs: