Description
utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effectively replace any directory with a new filesystem, and consequently gain privileges, via a mount system call.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2382-1 | ecryptfs-utils security update |
EUVD |
EUVD-2011-1829 | utils/mount.ecryptfs_private.c in ecryptfs-utils before 90 does not properly check mountpoint permissions, which allows local users to effectively replace any directory with a new filesystem, and consequently gain privileges, via a mount system call. |
Ubuntu USN |
USN-1188-1 | eCryptfs vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: canonical
Published:
Updated: 2024-08-06T22:37:25.762Z
Reserved: 2011-04-27T00:00:00.000Z
Link: CVE-2011-1831
No data.
Status : Modified
Published: 2014-02-15T14:57:06.253
Modified: 2026-04-29T01:13:23.040
Link: CVE-2011-1831
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN