Description
An unspecified udev rule in the Debian fuse package in jessie before 2.9.3-15+deb8u2, in stretch before 2.9.5-1, and in sid before 2.9.5-1 sets world-writable permissions for the /dev/cuse character device, which allows local users to gain privileges via a character device in /dev, related to an ioctl.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-3451-1 | fuse security update |
EUVD |
EUVD-2016-2334 | An unspecified udev rule in the Debian fuse package in jessie before 2.9.3-15+deb8u2, in stretch before 2.9.5-1, and in sid before 2.9.5-1 sets world-writable permissions for the /dev/cuse character device, which allows local users to gain privileges via a character device in /dev, related to an ioctl. |
References
History
No history.
Status: PUBLISHED
Assigner: debian
Published:
Updated: 2024-08-05T22:48:13.640Z
Reserved: 2015-12-27T00:00:00.000Z
Link: CVE-2016-1233
No data.
Status : Modified
Published: 2016-01-26T19:59:03.373
Modified: 2026-05-06T22:30:45.220
Link: CVE-2016-1233
OpenCVE Enrichment
No data.
Debian DSA
EUVD