OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.
2020-08-27T19:15:12.037
2024-11-21T05:15:57.530
Modified
CVSSv3.1: 7.8 (HIGH)
AV:L/AC:L/Au:N/C:C/I:C/A:C
3.9
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | openzfs | openzfs | ≤ 0.8.4 | Yes |
Operating System | freebsd | freebsd | - | No |