Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2003-1575

Overview

Vulnerability Score 4.6 4.6
CVE Id CVE-2003-1575
Last Modified 31 Jan 2010 12:00:00
Published 28 Jan 2010 03:30:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication NONE

CVE-2003-1575

Summary

VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not properly implement inheritance of default ACLs in certain circumstances related to the characteristics of a directory inode, which allows local users to bypass intended file permissions by accessing a file on a VxFS filesystem.

Vulnerable Systems

Application

  • Symantec Vxfs 3.3.3

  • Symantec Vxfs 3.4

  • Symantec Vxfs 3.5


References

SUNALERT - 200161

CONFIRM - http://sunsolve.sun.com/search/document.do?assetkey=1-21-113207-05-1


Last Updated: 27 May 2016 10:38:25