The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local users to leverage write access and obtain read access by swapping one file into another file.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2010-09-03T19:00:00
Updated: 2018-10-10T18:57:01
Reserved: 2010-06-09T00:00:00
Link: CVE-2010-2226
JSON object: View
NVD Information
Status : Modified
Published: 2010-09-03T20:00:03.340
Modified: 2023-02-13T04:20:30.060
Link: CVE-2010-2226
JSON object: View
Redhat Information
No data.
CWE