VYPR

ZFS

by OpenZFS

Source repositories

CVEs (3)

  • CVE-2020-24717HigAug 27, 2020
    risk 0.51cvss 7.8epss 0.00

    OpenZFS before 2.0.0-rc1, when used on FreeBSD, misinterprets group permissions as user permissions, as demonstrated by mode 0770 being equivalent to mode 0777.

  • CVE-2013-20001HigFeb 12, 2021
    risk 0.49cvss 7.5epss 0.02

    An issue was discovered in OpenZFS through 2.0.3. When an NFS share is exported to IPv6 addresses via the sharenfs feature, there is a silent failure to parse the IPv6 address data, and access is allowed to everyone. IPv6 restrictions from the configuration are not applied.

  • CVE-2026-79619HigAug 26, 2026
    risk 0.40cvss —epss 0.00

    On Linux, several OpenZFS ioctl authorization checks accept a capability held only within a user-created, unprivileged namespace as equivalent to real host privilege, allowing an unprivileged local user to perform operations that should require root. Affected operations include…