← Back

CVE-2018-13405

nvd nist
Published: Jul 6, 2018Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

The inode_init_owner function in fs/inode.c in the Linux kernel through 3.16 allows local users to create files with an unintended group ownership, in a scenario where a directory is SGID to a certain group and is writable by a user who is not a member of that group. Here, the non-member can trigger creation of a plain file whose group ownership is that group. The intended behavior was that the non-member can trigger creation of a directory (but not a plain file) whose group ownership is that group. The non-member can escalate privileges by making the plain file executable and SGID.

Affected (92)

Show all products
1 product
Linux Kernel
1 product
Debian Linux
1 product
Ubuntu Linux
1 product
Fedora
10 products
Enterprise Linux Aus
Enterprise Linux Desktop
Enterprise Linux Eus
Enterprise Linux For Real Time
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Tus
Enterprise Linux Workstation
Mrg Realtime
Virtualization
13 products
Big Ip Access Policy Manager
Big Ip Advanced Firewall Manager
Big Ip Analytics
Big Ip Domain Name System
Big Ip Edge Gateway
Big Ip Fraud Protection Service
Big Ip Global Traffic Manager
Big Ip Link Controller
Big Ip Local Traffic Manager
Big Ip Policy Enforcement Manager
Big Ip Webaccelerator
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Up to 3.16
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Debian
Version 8.0
Version 9.0
Configuration C
4 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 14.04
Version 16.04
Version 16.04
Version 18.04
Configuration D
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 34
Version 35
Configuration E
18 vulnerable
Configuration F
65 vulnerable
Vulnerable SoftwareAffected Versions
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0
F5
From 13.0.0 to 13.1.3.5
From 14.0.0 to 14.1.3.1
From 15.0.0 to 15.0.1.4
Version 15.1.0
Version 16.0.0

References (56)

Source: cve@mitre.org
Mailing ListPatchThird Party Advisory
Source: cve@mitre.org
Broken Link
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
Third Party Advisory
Source: cve@mitre.org
ExploitThird Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListPatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
PatchThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party AdvisoryVDB Entry

Timeline

No history available yet.