Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-32rg-hvr8-56hx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

EPSS

Процентиль: 48%
0.00247
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

redhat
больше 10 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

nvd
больше 10 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.

debian
больше 10 лет назад

fusermount in FUSE before 2.9.3-15 does not properly clear the environ ...

suse-cvrf
больше 10 лет назад

Security update for fuse

EPSS

Процентиль: 48%
0.00247
Низкий