CVE-2011-1835
published 2014-02-15CVE-2011-1835: The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is…
PriorityP414medium4.4CVSS 2.0
AVLACMAuNCPIPAP
EPSS
0.35%
27.4th percentile
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might allow local users to bypass intended access restrictions at a certain time in the new-user creation steps.
Affected
36 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | ecryptfs-utils | < ecryptfs-utils 92-1 (bookworm) | ecryptfs-utils 92-1 (bookworm) |
| ecryptfs | ecryptfs-utils | <= 89 | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
| ecryptfs | ecryptfs-utils | — | — |
CVSS provenance
nvdv2.04.4MEDIUMAV:L/AC:M/Au:N/C:P/I:P/A:P
osv4.4MEDIUM
vendor_ubuntu4.6MEDIUM
vendor_debian4.4MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
eCryptfs vulnerabilities
vendor_ubuntu·2011-08-09·CVSS 4.6
CVE-2011-1834 [MEDIUM] eCryptfs vulnerabilities
Title: eCryptfs vulnerabilities
Summary: eCryptfs could be tricked into mounting and unmounting arbitrary locations,
and possibly disclose confidential information.
Vasiliy Kulikov and Dan Rosenberg discovered that eCryptfs incorrectly
validated permissions on the requested mountpoint. A local attacker could
use this flaw to mount to arbitrary locations, leading to privilege
escalation. (CVE-2011-1831)
Vasiliy Kulikov and Dan Rosenberg discovered that eCryptfs incorrectly
validated permissions on the requested mountpoint. A local attacker could
use this flaw to unmount to arbitrary locations, leading to a denial of
service. (CVE-2011-1832)
Vasiliy Kulikov and Dan Rosenberg discovered that eCryptfs incorrectly
validated permissions on the requested source directory. A local attacker
cou
Red Hat
ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
vendor_redhat·2011-08-09·CVSS 4.4
CVE-2011-1835 [MEDIUM] ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might allow local users to bypass intended access restrictions at a certain time in the new-user creation steps.
Debian
CVE-2011-1835: ecryptfs-utils - The encrypted private-directory setup process in utils/ecryptfs-setup-private in...
vendor_debian·2011·CVSS 4.4
CVE-2011-1835 [MEDIUM] CVE-2011-1835: ecryptfs-utils - The encrypted private-directory setup process in utils/ecryptfs-setup-private in...
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might allow local users to bypass intended access restrictions at a certain time in the new-user creation steps.
Scope: local
bookworm: resolved (fixed in 92-1)
bullseye: resolved (fixed in 92-1)
forky: resolved (fixed in 92-1)
sid: resolved (fixed in 92-1)
trixie: resolved (fixed in 92-1)
GHSA
GHSA-5w9q-2c3w-jmw2: The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase
ghsa_unreviewed·2022-05-17
CVE-2011-1835 [MEDIUM] GHSA-5w9q-2c3w-jmw2: The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might allow local users to bypass intended access restrictions at a certain time in the new-user creation steps.
OSV
CVE-2011-1835: The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase
osv·2014-02-15·CVSS 4.4
CVE-2011-1835 [MEDIUM] CVE-2011-1835: The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase
The encrypted private-directory setup process in utils/ecryptfs-setup-private in ecryptfs-utils before 90 does not properly ensure that the passphrase file is created, which might allow local users to bypass intended access restrictions at a certain time in the new-user creation steps.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
bugzilla·2011-08-09·CVSS 4.6
CVE-2011-1831 [MEDIUM] CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information
A number of flaws were reported [1] in eCryptfs that could allow a user to mount or unmount arbitrary locations, and possibly disclose confidential information:
Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to mount to arbitrary locations, leading to privilege escalation. (CVE-2011-1831)
Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to unmount to arbitrary locations,
Bugzilla
CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1836 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information [fedora-
bugzilla·2011-08-09·CVSS 4.6
CVE-2011-1831 [MEDIUM] CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1836 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information [fedora-
CVE-2011-1831 CVE-2011-1832 CVE-2011-1834 CVE-2011-1835 CVE-2011-1836 CVE-2011-1837 ecryptfs: multiple flaws to mount/umount arbitrary locations and possibly disclose confidential information [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include the bug IDs of the
respective parent bugs filed against the "Security Response" product.
Please mention CVE ids in the RPM changelog when available.
Bodhi update
http://lists.opensuse.org/opensuse-security-announce/2011-08/msg00009.htmlhttp://www.ubuntu.com/usn/USN-1188-1https://bugzilla.redhat.com/show_bug.cgi?id=729465https://launchpad.net/ecryptfs/+downloadhttp://lists.opensuse.org/opensuse-security-announce/2011-08/msg00009.htmlhttp://www.ubuntu.com/usn/USN-1188-1https://bugzilla.redhat.com/show_bug.cgi?id=729465https://launchpad.net/ecryptfs/+download
2014-02-15
Published