Rsbac Rule Set Based Access Control vulnerabilities
2 known vulnerabilities affecting rsbac/rule_set_based_access_control.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2007-3945MEDIUMCVSS 6.4fixed in 1.3.52007-07-23
CVE-2007-3945 [MEDIUM] CVE-2007-3945: Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API
Rule Set Based Access Control (RSBAC) before 1.3.5 does not properly use the Linux Kernel Crypto API for the Linux kernel 2.6.x, which allows context-dependent attackers to bypass authentication controls via unspecified vectors, possibly involving User Management password hashing and unchecked function return codes.
nvd
CVE-2004-0667HIGHCVSS 7.2v1.2.2v1.2.32004-08-06
CVE-2004-0667 [HIGH] CVE-2004-0667: Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and
Rule Set Based Access Control (RSBAC) 1.2.2 through 1.2.3 allows access to sys_creat, sys_open, and sys_mknod inside jails, which could allow local users to gain elevated privileges.
nvd