Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-32rg-hvr8-56hx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

EPSS

Процентиль: 60%
0.01008
Низкий

Связанные уязвимости

ubuntu
около 11 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

redhat
около 11 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

nvd
около 11 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

debian
около 11 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environ ...

suse-cvrf
около 11 лет назад

Security update for fuse

EPSS

Процентиль: 60%
0.01008
Низкий