CVE-2020-24394

Priority
Description
In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set
incorrect permissions on new filesystem objects when the filesystem lacks
ACL support, aka CID-22cf8419f131. This occurs because the current umask is
not considered.
Ubuntu-Description
It was discovered that the NFS server implementation in the Linux kernel
did not properly honor umask settings when setting permissions while
creating file system objects if the underlying file system did not support
ACLs. An attacker could possibly use this to expose sensitive information
or violate system integrity.
Notes
Package
Source: linux (LP Ubuntu Debian)
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-115.116)
Ubuntu 20.04 LTS:released (5.4.0-45.49)
Ubuntu 16.04 ESM:not-affected (4.2.0-16.19)
Ubuntu 14.04 ESM:not-affected (3.11.0-12.19)
Patches:
Introduced by
47057abde515155a4fee53038e7772d6b387e0aa
Fixed by
22cf8419f1319ff87ec759d0ebdff4cbafaee832
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1080.84)
Ubuntu 20.04 LTS:released (5.4.0-1022.22)
Ubuntu 16.04 ESM:not-affected (4.4.0-1001.10)
Ubuntu 14.04 ESM:not-affected (4.4.0-1002.2)
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.3.0-1033.35)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-1022.22~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:DNE
Ubuntu 16.04 ESM:released (4.15.0-1080.84~16.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:released (5.4.0-1023.23)
Ubuntu 16.04 ESM:released (4.15.0-1093.103~16.04.1)
Ubuntu 14.04 ESM:released (4.15.0-1093.103~14.04.1)
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1093.103)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.3.0-1035.36)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-1023.23~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:not-affected (4.15.0-1005.8)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:released (5.4.0-1022.22)
Ubuntu 16.04 ESM:released (4.15.0-1081.92~16.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1081.92)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-1022.22~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1067.70)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needed now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.3.0-1033.35)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:not-affected (5.4.0-1025.25~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:not-affected (5.4.0-1008.9)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:not-affected (5.4.0-1001.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.3.0-65.59)
Ubuntu 20.04 LTS:DNE
Ubuntu 16.04 ESM:released (4.15.0-115.116~16.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-45.49~18.04.2)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:not-affected (5.8.0-23.24~20.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 16.04 ESM:ignored (was needs-triage now end-of-life)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1072.73)
Ubuntu 20.04 LTS:released (5.4.0-1021.21)
Ubuntu 16.04 ESM:not-affected (4.4.0-1004.9)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:not-affected (4.4.0-13.29~14.04.1)
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1094.104)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:not-affected (5.10.0-1008.9)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:released (5.6.0-1031.32)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needed now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1051.55)
Ubuntu 20.04 LTS:released (5.4.0-1022.22)
Ubuntu 16.04 ESM:released (4.15.0-1051.55~16.04.1)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-1022.22~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:released (5.4.0-1016.17)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.4.0-1016.17~18.04.1)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1068.72)
Ubuntu 20.04 LTS:ignored (was needs-triage now end-of-life)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (5.3.0-1032.34)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:DNE
Ubuntu 20.04 LTS:released (5.4.0-31.35)
Ubuntu 14.04 ESM:DNE
Patches:
Package
Upstream:released (5.8~rc4)
Ubuntu 18.04 LTS:released (4.15.0-1084.92)
Ubuntu 20.04 LTS:DNE
Ubuntu 14.04 ESM:DNE
Patches:
More Information

Updated: 2022-04-13 14:17:04 UTC (commit f411bd370d482ef4385c4e751d121a4055fbc009)