utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly maintain the mtab file during error conditions, which allows local users to cause a denial of service (table corruption) or bypass intended unmounting restrictions via a umount system call.
CVSS Details
- CVSS 3.1 Base Score: 3.3
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ecryptfs-utils-guiUpgrade ecryptfs-utilsUpgrade ecryptfs-utils-devel | Dec 1, 2016 | Feb 15, 2014 |
| Debian | — | Upgrade ecryptfs-utils | Jul 30, 2024 | Feb 15, 2014 |
| Oracle_linux | — | Upgrade ecryptfs-utils-guiUpgrade ecryptfs-utils-develUpgrade ecryptfs-utils-pythonUpgrade ecryptfs-utils | Oct 16, 2024 | Feb 15, 2014 |
| Suse | — | Upgrade ecryptfs-utils-x86Upgrade ecryptfs-utils-32bitUpgrade ecryptfs-utilsUpgrade ecryptfs-utils-develUpgrade libecryptfs1 | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade ecryptfs-utils | Nov 8, 2024 | Feb 15, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub