Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-1572

Опубликовано: 22 янв. 2016
Источник: debian

Описание

mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
ecryptfs-utilsfixed106-2package

Примечания

  • https://bugs.launchpad.net/ecryptfs/+bug/1530566

  • https://bazaar.launchpad.net/~ecryptfs/ecryptfs/trunk/revision/870

Связанные уязвимости

CVSS3: 8.4
ubuntu
около 10 лет назад

mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

redhat
около 10 лет назад

mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

CVSS3: 8.4
nvd
около 10 лет назад

mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

CVSS3: 8.4
github
больше 3 лет назад

mount.ecryptfs_private.c in eCryptfs-utils does not validate mount destination filesystem types, which allows local users to gain privileges by mounting over a nonstandard filesystem, as demonstrated by /proc/$pid.

suse-cvrf
около 10 лет назад

Security update for ecryptfs-utils