CVE-2011-1676
published 2011-04-10CVE-2011-1676: mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger…
PriorityP47low3.3CVSS 2.0
AVLACMAuNCPIPAN
EPSS
0.49%
38.7th percentile
mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| kernel | util-linux | >= 0 < 2.20.1-5.1ubuntu20.4 | 2.20.1-5.1ubuntu20.4 |
| linux | util-linux | <= 2.19 | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
| linux | util-linux | — | — |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:P/I:P/A:N
osv3.3LOW
vendor_redhat3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xgxp-wxpw-r9x6: mount in util-linux 2
ghsa_unreviewed·2022-05-17
CVE-2011-1676 [LOW] GHSA-xgxp-wxpw-r9x6: mount in util-linux 2
mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
OSV
CVE-2011-1676: mount in util-linux 2
osv·2011-04-10·CVSS 3.3
CVE-2011-1676 [LOW] CVE-2011-1676: mount in util-linux 2
mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
Red Hat
util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
vendor_redhat·2011-03-03·CVSS 3.3
CVE-2011-1676 [LOW] util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
Statement: Red Hat Product Security determined that this flaw was not a security vulnerability. See the Bugzilla link for more details.
Package: util-linux (Red Hat Enterprise Linux 4) - Not affected
Package: util-linux (Red Hat Enterprise Linux 5) - Not affected
Package: util-linux-ng (Red Hat Enterprise Linux 6) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-1676 util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
bugzilla·2011-04-12·CVSS 3.3
CVE-2011-1676 [LOW] CVE-2011-1676 util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
CVE-2011-1676 util-linux: mount does not remove /etc/mtab.tmp after failed mount entry addition
Common Vulnerabilities and Exposures assigned an identifier CVE-2011-1676 to
the following vulnerability:
Name: CVE-2011-1676
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1676
Assigned: 20110409
Reference: http://openwall.com/lists/oss-security/2011/03/04/11
Reference: http://openwall.com/lists/oss-security/2011/03/04/9
Reference: http://openwall.com/lists/oss-security/2011/03/04/10
Reference: http://openwall.com/lists/oss-security/2011/03/04/12
Reference: http://openwall.com/lists/oss-security/2011/03/05/3
Reference: http://openwall.com/lists/oss-security/2011/03/05/7
Reference: http://openwall.com/lists/oss-security/2011/03/07/9
Reference: http://openwall.com/lists/oss-securit
Bugzilla
CVE-2011-1675 CVE-2011-1677 util-linux-ng various flaws [fedora-all]
bugzilla·2011-04-12·CVSS 3.3
CVE-2011-1675 [LOW] CVE-2011-1675 CVE-2011-1677 util-linux-ng various flaws [fedora-all]
CVE-2011-1675 CVE-2011-1677 util-linux-ng various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=695916
Please note: this issue affects multiple suppo
Bugzilla
CVE-2011-1089 glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE
bugzilla·2011-03-18·CVSS 3.3
CVE-2011-1089 [LOW] CVE-2011-1089 glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE
CVE-2011-1089 glibc: Suid mount helpers fail to anticipate RLIMIT_FSIZE
Dan Rosenberg reported a flaw with suid mount helpers handle access to /etc/mtab [1], which could allow an unprivileged user to corrupt /etc/mtab and possibly manipulate mountpoint options or unmount a filesystem.
The original report follows.
This was originally sent to the now-defunct vendor-sec mailing list.
Seeing how it's a relatively low-severity issue and that we're
currently lacking a mechanism for coordination among package
maintainers and vendors, this list seems like a perfectly acceptable
venue for discussing how to fix it.
I discovered that essentially every suid mount helper that uses
addmntent() (or invokes util-linux mount, which in turn calls
addmntent()) to add entries to /etc/mtab fails to antici
Bugzilla
CVE-2011-0015 CVE-2011-0016 CVE-2011-0427 CVE-2011-0490 CVE-2011-0491 CVE-2011-0492 CVE-2011-0493 CVE-2010-1676 CVE-2010-0383 CVE-2010-0385 tor various flaws [epel-5]
bugzilla·2011-01-20·CVSS 5.0
CVE-2011-0015 [MEDIUM] CVE-2011-0015 CVE-2011-0016 CVE-2011-0427 CVE-2011-0490 CVE-2011-0491 CVE-2011-0492 CVE-2011-0493 CVE-2010-1676 CVE-2010-0383 CVE-2010-0385 tor various flaws [epel-5]
CVE-2011-0015 CVE-2011-0016 CVE-2011-0427 CVE-2011-0490 CVE-2011-0491 CVE-2011-0492 CVE-2011-0493 CVE-2010-1676 CVE-2010-0383 CVE-2010-0385 tor various flaws [epel-5]
epel-5 tracking bug for tor: see blocks bug list for full details of the security issue(s).
This bug is never intended to be made public, please put any public notes
in the 'blocks' bugs.
[bug automatically created by: add-tracking-bugs]
Discussion:
Adding parent bug CVE-2010-1676
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=671259,665046
---
Adding parent bug CVE-2010-0383
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?type_=security&bugs=671259,665046,557798
---
Adding parent bug 705192
New bodhi update url:
https://admin.fedoraproject.org/updates/new/?
http://openwall.com/lists/oss-security/2011/03/04/10http://openwall.com/lists/oss-security/2011/03/04/11http://openwall.com/lists/oss-security/2011/03/04/12http://openwall.com/lists/oss-security/2011/03/04/9http://openwall.com/lists/oss-security/2011/03/05/3http://openwall.com/lists/oss-security/2011/03/05/7http://openwall.com/lists/oss-security/2011/03/07/9http://openwall.com/lists/oss-security/2011/03/14/16http://openwall.com/lists/oss-security/2011/03/14/5http://openwall.com/lists/oss-security/2011/03/14/7http://openwall.com/lists/oss-security/2011/03/15/6http://openwall.com/lists/oss-security/2011/03/22/4http://openwall.com/lists/oss-security/2011/03/22/6http://openwall.com/lists/oss-security/2011/03/31/3http://openwall.com/lists/oss-security/2011/03/31/4http://openwall.com/lists/oss-security/2011/04/01/2https://bugzilla.redhat.com/show_bug.cgi?id=688980https://exchange.xforce.ibmcloud.com/vulnerabilities/66704http://openwall.com/lists/oss-security/2011/03/04/10http://openwall.com/lists/oss-security/2011/03/04/11http://openwall.com/lists/oss-security/2011/03/04/12http://openwall.com/lists/oss-security/2011/03/04/9http://openwall.com/lists/oss-security/2011/03/05/3http://openwall.com/lists/oss-security/2011/03/05/7http://openwall.com/lists/oss-security/2011/03/07/9http://openwall.com/lists/oss-security/2011/03/14/16http://openwall.com/lists/oss-security/2011/03/14/5http://openwall.com/lists/oss-security/2011/03/14/7http://openwall.com/lists/oss-security/2011/03/15/6http://openwall.com/lists/oss-security/2011/03/22/4http://openwall.com/lists/oss-security/2011/03/22/6http://openwall.com/lists/oss-security/2011/03/31/3http://openwall.com/lists/oss-security/2011/03/31/4http://openwall.com/lists/oss-security/2011/04/01/2https://bugzilla.redhat.com/show_bug.cgi?id=688980https://exchange.xforce.ibmcloud.com/vulnerabilities/66704
2011-04-10
Published