CVE-2011-1676

mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:linux:util-linux:*:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.2:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.5:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.7:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.8:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.9:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.10:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.11:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.12:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.12:pre:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.13:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.13:pre:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.14:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.15:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.16:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.17:*:*:*:*:*:*:*
cpe:2.3:a:linux:util-linux:2.18:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-04-10 02:55

Updated : 2024-02-04 17:54


NVD link : CVE-2011-1676

Mitre link : CVE-2011-1676

CVE.ORG link : CVE-2011-1676


JSON object : View

Products Affected

linux

  • util-linux
CWE
CWE-264

Permissions, Privileges, and Access Controls