The lock-counter implementation in utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 allows local users to overwrite arbitrary files via unspecified vectors.
CVSS Details
- CVSS 3.1 Base Score: 4.4
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade ecryptfs-utilsUpgrade ecryptfs-utils-develUpgrade ecryptfs-utils-gui | Dec 1, 2016 | Feb 15, 2014 |
| Debian | — | Upgrade ecryptfs-utils | Jul 30, 2024 | Feb 15, 2014 |
| Oracle_linux | — | Upgrade ecryptfs-utils-develUpgrade ecryptfs-utils-guiUpgrade ecryptfs-utils-pythonUpgrade ecryptfs-utils | Oct 16, 2024 | Feb 15, 2014 |
| Suse | — | Upgrade ecryptfs-utilsUpgrade ecryptfs-utils-develUpgrade ecryptfs-utils-32bitUpgrade libecryptfs1 | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade ecryptfs-utils | Nov 8, 2024 | Feb 15, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub