>> grsecurity RBAC User Transition Rules Local Security Bypass Issue
Title : grsecurity RBAC User Transition Rules Local Security Bypass Issue VUPEN ID : VUPEN/ADV-2008-1323 CVE ID : CVE-2008-1940
Rated as : Low Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2008-04-23
Technical Description
A vulnerability has been identified in grsecurity, which could be exploited by local attackers to bypass security restrictions. This issue is caused by an error in the RBAC system that ignores "user_transition_deny" and "user_transition_allow" rules when handling calls to "sys_setfsuid()" and "sys_setfsgid()", which could be exploited by malicious users to bypass the affected rules.