CVE-2010-2022

jail.c in jail in FreeBSD 8.0 and 8.1-PRERELEASE, when the "-l -U root" options are omitted, does not properly restrict access to the current working directory, which might allow local users to read, modify, or create arbitrary files via standard filesystem operations.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:freebsd:freebsd:8.0:*:*:*:*:*:*:*
cpe:2.3:o:freebsd:freebsd:8.1-prerelease:*:*:*:*:*:*:*

History

No history.

Information

Published : 2010-05-28 18:30

Updated : 2023-12-10 11:03


NVD link : CVE-2010-2022

Mitre link : CVE-2010-2022

CVE.ORG link : CVE-2010-2022


JSON object : View

Products Affected

freebsd

  • freebsd
CWE
CWE-264

Permissions, Privileges, and Access Controls