CVE-2011-1681
published 2011-04-10CVE-2011-1681: vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first…
PriorityP46low3.3CVSS 2.0
AVLACMAuNCPIPAN
EPSS
0.44%
35.7th percentile
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | open-vm-tools | < open-vm-tools 2:8.4.2+2011.08.21-471295-1 (bookworm) | open-vm-tools 2:8.4.2+2011.08.21-471295-1 (bookworm) |
| vmware | open-vm-tools | <= 8.4.2-261024 | — |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
| vmware | open-vm-tools | >= 0 < 2:8.4.2+2011.08.21-471295-1 | 2:8.4.2+2011.08.21-471295-1 |
CVSS provenance
nvdv2.03.3LOWAV:L/AC:M/Au:N/C:P/I:P/A:N
osv3.3LOW
vendor_debian3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-94c3-vwq8-frg9: vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8
ghsa_unreviewed·2022-05-17·CVSS 3.3
CVE-2011-1681 [LOW] GHSA-94c3-vwq8-frg9: vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
OSV
CVE-2011-1681: vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8
osv·2011-04-10·CVSS 3.3
CVE-2011-1681 [LOW] CVE-2011-1681: vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
Debian
CVE-2011-1681: open-vm-tools - vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4....
vendor_debian·2011·CVSS 3.3
CVE-2011-1681 [LOW] CVE-2011-1681: open-vm-tools - vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4....
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
Scope: local
bookworm: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
bullseye: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
forky: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
sid: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
trixie: resolved (fixed in 2:8.4.2+2011.08.21-471295-1)
No detection rules found.
No writeups or analysis indexed.
http://openwall.com/lists/oss-security/2011/03/04/10http://openwall.com/lists/oss-security/2011/03/04/11http://openwall.com/lists/oss-security/2011/03/04/12http://openwall.com/lists/oss-security/2011/03/04/9http://openwall.com/lists/oss-security/2011/03/05/3http://openwall.com/lists/oss-security/2011/03/05/7http://openwall.com/lists/oss-security/2011/03/07/9http://openwall.com/lists/oss-security/2011/03/14/16http://openwall.com/lists/oss-security/2011/03/14/5http://openwall.com/lists/oss-security/2011/03/14/7http://openwall.com/lists/oss-security/2011/03/15/6http://openwall.com/lists/oss-security/2011/03/22/4http://openwall.com/lists/oss-security/2011/03/22/6http://openwall.com/lists/oss-security/2011/03/31/3http://openwall.com/lists/oss-security/2011/03/31/4http://openwall.com/lists/oss-security/2011/04/01/2http://secunia.com/advisories/44904https://bugzilla.redhat.com/show_bug.cgi?id=688980https://exchange.xforce.ibmcloud.com/vulnerabilities/66699https://hermes.opensuse.org/messages/8711677http://openwall.com/lists/oss-security/2011/03/04/10http://openwall.com/lists/oss-security/2011/03/04/11http://openwall.com/lists/oss-security/2011/03/04/12http://openwall.com/lists/oss-security/2011/03/04/9http://openwall.com/lists/oss-security/2011/03/05/3http://openwall.com/lists/oss-security/2011/03/05/7http://openwall.com/lists/oss-security/2011/03/07/9http://openwall.com/lists/oss-security/2011/03/14/16http://openwall.com/lists/oss-security/2011/03/14/5http://openwall.com/lists/oss-security/2011/03/14/7http://openwall.com/lists/oss-security/2011/03/15/6http://openwall.com/lists/oss-security/2011/03/22/4http://openwall.com/lists/oss-security/2011/03/22/6http://openwall.com/lists/oss-security/2011/03/31/3http://openwall.com/lists/oss-security/2011/03/31/4http://openwall.com/lists/oss-security/2011/04/01/2http://secunia.com/advisories/44904https://bugzilla.redhat.com/show_bug.cgi?id=688980https://exchange.xforce.ibmcloud.com/vulnerabilities/66699https://hermes.opensuse.org/messages/8711677
2011-04-10
Published