Security Advisory
CVE-2009-2657
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
nilfs-utils before 2.0.14 installs multiple programs with unnecessary setuid privileges, which allows local users to execute arbitrary commands via the device string in a -c command line option to mkfs.nilfs2.