CVE-2010-2226 (retired)

Priority
Description
The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before
2.6.35 does not properly check the file descriptors passed to the SWAPEXT
ioctl, which allows local users to leverage write access and obtain read
access by swapping one file into another file.
Ubuntu-Description
Dan Rosenberg discovered that the swapexit xfs ioctl did not correctly
check file permissions. A local attacker could exploit this to read from
write-only files, leading to a loss of privacy.
Assigned-to
bradf
Package
Upstream:released (2.6.35~rc4)
Package
Upstream:released (2.6.35~rc4)
Package
Upstream:released (2.6.35~rc4)
Package
Upstream:released (2.6.35~rc4)
More Information

Updated: 2019-03-26 11:52:03 UTC (commit ccdecfcf0fead22bd291e5f4ea745a46872dcb15)