CVE-2003-1575: Medium severity Symantec Vxfs vulnerability
VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not properly implement inheritance of default ACLs in certain circumstances related to the characteristics of a directory inode, which allows local users to bypass intended file permissions by accessing a file on a VxFS filesystem.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2003-1575?
CVE-2003-1575 is classified as a medium severity vulnerability.
How do I fix CVE-2003-1575?
To fix CVE-2003-1575, apply the MP1 Rolling Patch 02 for the affected versions of Symantec Veritas File System.
Which software versions are affected by CVE-2003-1575?
CVE-2003-1575 affects Symantec Veritas File System versions 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 on Sun Solaris versions 2.5.1 through 9.
Can CVE-2003-1575 be exploited remotely?
No, CVE-2003-1575 is a local vulnerability, meaning it requires local user access to be exploited.
What type of vulnerability is CVE-2003-1575?
CVE-2003-1575 is an access control vulnerability that allows local users to bypass intended file permissions.