CVE-2010-0789
published 2010-03-02CVE-2010-0789: fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
PriorityP48low3.3CVSS 2.0
AVLACMAuNCNIPAP
EPSS
0.40%
32.1th percentile
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
Affected
32 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | fuse | < fuse 2.8.1-1.2 (bookworm) | fuse 2.8.1-1.2 (bookworm) |
| debian | fuse | < fuse 2.8.5-1 (bookworm) | fuse 2.8.5-1 (bookworm) |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
| fuse | fuse | — | — |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:N/I:P/A:P
osv3.3LOW
vendor_debian3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
fuse: unprivileged user can unmount arbitrary locations via symlink attack
vendor_redhat·2010-11-02·CVSS 3.3
CVE-2010-3879 [LOW] fuse: unprivileged user can unmount arbitrary locations via symlink attack
fuse: unprivileged user can unmount arbitrary locations via symlink attack
FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.
Statement: The Red Hat Security Response Team has rated this issue as having low security impact. On Red Hat Enterprise Linux 5 and 6, a user must be a member of the 'fuse' group in order to use FUSE. Due to the risks associated with fixing this bug on Red Hat Enterprise Linux 5, and because of the group restrictions in place, we currently have no plans to fix this flaw in Red Hat Enterprise Linux 5.
Package: fuse (Red Hat Enterprise Linux 5) -
Ubuntu
FUSE vulnerability
vendor_ubuntu·2010-01-28
CVE-2009-3297 FUSE vulnerability
Title: FUSE vulnerability
Summary: FUSE vulnerability
Dan Rosenberg discovered that FUSE did not correctly check mount
locations. A local attacker, with access to use FUSE, could unmount
arbitrary locations, leading to a denial of service.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Red Hat
fuse: Race condition by umount (fusermount) operations
vendor_redhat·2010-01-26·CVSS 3.3
CVE-2010-0789 [LOW] fuse: Race condition by umount (fusermount) operations
fuse: Race condition by umount (fusermount) operations
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
Statement: This issue affects Red Hat Enterprise Linux 5 because it ships fusermount suid root, however the impact of this flaw is minimized due to the fact that only members in group fuse may use it the executable is owned root:fuse and mode 4750.
Red Hat Enterprise Linux 3 and 4 do not provide the fuse package.
The Red Hat Product Security has rated this issue as having low security impact, a future update may address this flaw. More information regarding issue severity can be found here:
https://access.redhat.com/security/updates/classification/
Package: fuse (Red Hat Ente
Debian
CVE-2010-0789: fuse - fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to u...
vendor_debian·2010·CVSS 3.3
CVE-2010-0789 [LOW] CVE-2010-0789: fuse - fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to u...
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
Scope: local
bookworm: resolved (fixed in 2.8.1-1.2)
bullseye: resolved (fixed in 2.8.1-1.2)
sid: resolved (fixed in 2.8.1-1.2)
trixie: resolved (fixed in 2.8.1-1.2)
Debian
CVE-2010-3879: fuse - FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with...
vendor_debian·2010·CVSS 3.3
CVE-2010-3879 [LOW] CVE-2010-3879: fuse - FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with...
FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.
Scope: local
bookworm: resolved (fixed in 2.8.5-1)
bullseye: resolved (fixed in 2.8.5-1)
sid: resolved (fixed in 2.8.5-1)
trixie: resolved (fixed in 2.8.5-1)
GHSA
GHSA-9qwx-j72c-6hr4: FUSE, possibly 2
ghsa_unreviewed·2022-05-13·CVSS 3.3
CVE-2010-3879 [LOW] CWE-59 GHSA-9qwx-j72c-6hr4: FUSE, possibly 2
FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.
GHSA
GHSA-fgrw-x4f3-89h8: fusermount in FUSE before 2
ghsa_unreviewed·2022-05-02
CVE-2010-0789 [LOW] CWE-59 GHSA-fgrw-x4f3-89h8: fusermount in FUSE before 2
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
OSV
CVE-2010-3879: FUSE, possibly 2
osv·2011-01-22·CVSS 3.3
CVE-2010-3879 [LOW] CVE-2010-3879: FUSE, possibly 2
FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.
OSV
CVE-2010-0789: fusermount in FUSE before 2
osv·2010-03-02·CVSS 3.3
CVE-2010-0789 [LOW] CVE-2010-0789: fusermount in FUSE before 2
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-0789 php: strtotime timezone memory leak
bugzilla·2012-01-21·CVSS 5.0
CVE-2012-0789 [MEDIUM] CVE-2012-0789 php: strtotime timezone memory leak
CVE-2012-0789 php: strtotime timezone memory leak
https://bugs.php.net/bug.php?id=53502
[2010-12-08 21:04 UTC] jsheridan at tenable dot com
Description:
strtotime calls with a timezone embedded function correctly but continually use up
memory. In a daemon program this becomes quickly fatal.
Test script:
Expected result:
Memory usage should remain stable.
Discussion:
Duping against bug 169857.
*** This bug has been marked as a duplicate of bug 169857 ***
---
Statement:
(none)
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2012:1047 https://rhn.redhat.com/errata/RHSA-2012-1047.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2012:1046 https://rhn.redhat.com/errata/RHSA-2012-104
Bugzilla
CVE-2010-0789 fuse: Race condition by umount (fusermount) operations
bugzilla·2010-03-26·CVSS 3.3
CVE-2010-0789 [LOW] CVE-2010-0789 fuse: Race condition by umount (fusermount) operations
CVE-2010-0789 fuse: Race condition by umount (fusermount) operations
+++ This bug was initially created as a clone of Bug #532940 +++
Several race condition flaws were found in samba-client,
fuse and ncpfs packages:
a, Ronald Volgers found a race condition in the samba-client's
mount.cifs utility. Local, unprivileged user could use this
flaw to conduct symlink attacks, leading to disclosure of
sensitive information, or, possibly to privilege escalation.
Upstream bug report:
https://bugzilla.samba.org/show_bug.cgi?id=6853
Upstream Samba patches:
http://git.samba.org/?p=samba.git;a=commit;h=3ae5dac462c4ed0fb2cd94553583c56fce2f9d80 http://git.samba.org/?p=samba.git;a=commit;h=a065c177dfc8f968775593ba00dffafeebb2e054 http://git.samba.org/?p=samba.git;a=commit;h=a0c31ec1c8d1220a5884e40d9b
Bugzilla
CVE-2010-0787 samba: Race condition by mount (mount.cifs) operations
bugzilla·2010-03-26·CVSS 4.4
CVE-2010-0787 [MEDIUM] CVE-2010-0787 samba: Race condition by mount (mount.cifs) operations
CVE-2010-0787 samba: Race condition by mount (mount.cifs) operations
+++ This bug was initially created as a clone of Bug #532940 +++
Several race condition flaws were found in samba-client,
fuse and ncpfs packages:
a, Ronald Volgers found a race condition in the samba-client's
mount.cifs utility. Local, unprivileged user could use this
flaw to conduct symlink attacks, leading to disclosure of
sensitive information, or, possibly to privilege escalation.
Upstream bug report:
https://bugzilla.samba.org/show_bug.cgi?id=6853
Upstream Samba patches:
http://git.samba.org/?p=samba.git;a=commit;h=3ae5dac462c4ed0fb2cd94553583c56fce2f9d80 http://git.samba.org/?p=samba.git;a=commit;h=a065c177dfc8f968775593ba00dffafeebb2e054 http://git.samba.org/?p=samba.git;a=commit;h=a0c31ec1c8d1220a5884e40d9b
Bugzilla
CVE-2010-0788 ncpfs: Race condition by mount (ncpmount) / umount (ncpumount) operations
bugzilla·2009-11-04·CVSS 4.4
CVE-2010-0788 [MEDIUM] CVE-2010-0788 ncpfs: Race condition by mount (ncpmount) / umount (ncpumount) operations
CVE-2010-0788 ncpfs: Race condition by mount (ncpmount) / umount (ncpumount) operations
Several race condition flaws were found in samba-client,
fuse and ncpfs packages:
a, Ronald Volgers found a race condition in the samba-client's
mount.cifs utility. Local, unprivileged user could use this
flaw to conduct symlink attacks, leading to disclosure of
sensitive information, or, possibly to privilege escalation.
Upstream bug report:
https://bugzilla.samba.org/show_bug.cgi?id=6853
Upstream Samba patches:
http://git.samba.org/?p=samba.git;a=commit;h=3ae5dac462c4ed0fb2cd94553583c56fce2f9d80 http://git.samba.org/?p=samba.git;a=commit;h=a065c177dfc8f968775593ba00dffafeebb2e054 http://git.samba.org/?p=samba.git;a=commit;h=a0c31ec1c8d1220a5884e40d9ba6b191a04a24d5
Issue severity note for Red Hat
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567633http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034518.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/034580.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-02/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/38261http://secunia.com/advisories/38287http://secunia.com/advisories/38359http://secunia.com/advisories/38437http://sourceforge.net/projects/fuse/files/ReleaseNotes/fuse-2.8.3.html/viewhttp://sourceforge.net/projects/fuse/files/fuse-2.X/2.7.5/fuse-2.7.5.tar.gz/downloadhttp://www.debian.org/security/2010/dsa-1989http://www.securityfocus.com/bid/37983http://www.ubuntu.com/usn/USN-892-1http://www.vupen.com/english/advisories/2010/1107https://bugzilla.redhat.com/show_bug.cgi?id=532940https://bugzilla.redhat.com/show_bug.cgi?id=558833https://exchange.xforce.ibmcloud.com/vulnerabilities/55945http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=567633http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034518.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/034580.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-02/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-05/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/38261http://secunia.com/advisories/38287http://secunia.com/advisories/38359http://secunia.com/advisories/38437http://sourceforge.net/projects/fuse/files/ReleaseNotes/fuse-2.8.3.html/viewhttp://sourceforge.net/projects/fuse/files/fuse-2.X/2.7.5/fuse-2.7.5.tar.gz/downloadhttp://www.debian.org/security/2010/dsa-1989http://www.securityfocus.com/bid/37983http://www.ubuntu.com/usn/USN-892-1http://www.vupen.com/english/advisories/2010/1107https://bugzilla.redhat.com/show_bug.cgi?id=532940https://bugzilla.redhat.com/show_bug.cgi?id=558833https://exchange.xforce.ibmcloud.com/vulnerabilities/55945
2010-03-02
Published