Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-1089

Опубликовано: 03 мар. 2011
Источник: redhat
CVSS2: 3.3
EPSS Низкий

Описание

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=688980glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE

EPSS

Процентиль: 26%
0.00087
Низкий

3.3 Low

CVSS2

Связанные уязвимости

ubuntu
больше 14 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

nvd
больше 14 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

debian
больше 14 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 ...

github
около 3 лет назад

The addmntent function in the GNU C Library (aka glibc or libc6) 2.13 and earlier does not report an error status for failed attempts to write to the /etc/mtab file, which makes it easier for local users to trigger corruption of this file, as demonstrated by writes from a process with a small RLIMIT_FSIZE value, a different vulnerability than CVE-2010-0296.

oracle-oval
больше 13 лет назад

ELSA-2011-1526: glibc security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 26%
0.00087
Низкий

3.3 Low

CVSS2