Candidate: CVE-2009-1072 Description: nfsd in the Linux kernel before 2.6.28.9 does not drop the CAP_MKNOD capability before handling a user request in a thread, which allows local users to create device nodes, as demonstrated on a filesystem that has been exported with the root_squash option. References: http://thread.gmane.org/gmane.linux.kernel/805280 http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=76a67ec6fb79ff3570dcb5342142c16098299911 http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.28.9 Ubuntu-Description: Notes: Bugs: upstream: released (2.6.28.9, 2.6.29) linux-2.6: released (2.6.29-1) 2.6.18-etch-security: ignored (EOL) 2.6.24-etch-security: ignored (EOL) 2.6.26-lenny-security: released (2.6.26-15lenny1) [bugfix/all/nfsd-drop-CAP_MKNOD-for-non-root.patch] 2.6.15-dapper-security: 2.6.22-gutsy-security: 2.6.24-hardy-security: 2.6.27-intrepid-security: