Certain legacy functionality in fusermount in fuse 2.8.5 and earlier, when util-linux does not support the --no-canonicalize option, allows local users to bypass intended access restrictions and unmount arbitrary directories via a symlink attack.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2011-09-02 23:55
Updated : 2024-02-04 17:54
NVD link : CVE-2011-0543
Mitre link : CVE-2011-0543
CVE.ORG link : CVE-2011-0543
JSON object : View
Products Affected
fuse
- fuse
CWE
CWE-264
Permissions, Privileges, and Access Controls