VYPR

ZFS

by OpenZFS

CVEs (2)

  • CVE-2013-20001HigFeb 12, 2021
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in OpenZFS through 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs feature, there is a silent failure to parse the IPv6 address data, and access is allowed to everyone. IPv6 restrictions from the configuration are not applied.

  • CVE-2020-24717HigAug 27, 2020
    risk 0.00cvss 7.8epss 0.00

    OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.