OpenZFS before 2.0.0-rc1, when used on FreeBSD, allows execute permissions for all directories.
                
            References
                    | Link | Resource | 
|---|---|
| https://github.com/openzfs/zfs/commit/716b53d0a14c72bda16c0872565dd1909757e73f | Patch Third Party Advisory | 
| https://github.com/openzfs/zfs/compare/zfs-0.8.4...zfs-2.0.0-rc1 | Release Notes Third Party Advisory | 
| https://jira.ixsystems.com/browse/NAS-107270 | Exploit Issue Tracking Patch Third Party Advisory | 
| https://reviews.freebsd.org/D26107 | Issue Tracking Patch Third Party Advisory | 
| https://github.com/openzfs/zfs/commit/716b53d0a14c72bda16c0872565dd1909757e73f | Patch Third Party Advisory | 
| https://github.com/openzfs/zfs/compare/zfs-0.8.4...zfs-2.0.0-rc1 | Release Notes Third Party Advisory | 
| https://jira.ixsystems.com/browse/NAS-107270 | Exploit Issue Tracking Patch Third Party Advisory | 
| https://reviews.freebsd.org/D26107 | Issue Tracking Patch Third Party Advisory | 
Configurations
                    Configuration 1 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 05:15
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://github.com/openzfs/zfs/commit/716b53d0a14c72bda16c0872565dd1909757e73f - Patch, Third Party Advisory | |
| References | () https://github.com/openzfs/zfs/compare/zfs-0.8.4...zfs-2.0.0-rc1 - Release Notes, Third Party Advisory | |
| References | () https://jira.ixsystems.com/browse/NAS-107270 - Exploit, Issue Tracking, Patch, Third Party Advisory | |
| References | () https://reviews.freebsd.org/D26107 - Issue Tracking, Patch, Third Party Advisory | 
Information
                Published : 2020-08-27 19:15
Updated : 2024-11-21 05:15
NVD link : CVE-2020-24716
Mitre link : CVE-2020-24716
CVE.ORG link : CVE-2020-24716
JSON object : View
Products Affected
                openzfs
- openzfs
freebsd
- freebsd
CWE
                
                    
                        
                        CWE-863
                        
            Incorrect Authorization
