4.3
CVSSv2

CVE-2005-4351

Published: 31/12/2005 Updated: 20/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 6.4 | Exploitability Score: 3.1
VMScore: 383
Vector: AV:L/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

The securelevels implementation in FreeBSD 7.0 and previous versions, OpenBSD up to 3.8, DragonFly up to 1.2, and Linux up to 2.6.15 allows root users to bypass immutable settings for files by mounting another filesystem that masks the immutable files while the system is running.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

freebsd freebsd 7.0

dragonfly dragonfly

openbsd openbsd

freebsd freebsd

linux linux kernel

Exploits

BSD Securelevels can be circumvented at runtime By mounting another filesystem, immutable files can be masked Masking means placing an arbitrary file at the location of an immutable file, without changing the immutable file itself Details on how this can be exploited are included ...