CVE-2011-3145Ecryptfs-utils vulnerability

CWE-2548 documents8 sources
Severity
9.8CRITICALNVD
EPSS
0.2%
top 53.69%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 22
Latest updateSep 26

Description

When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doesn't also set the effective group id. So when it creates the new version, mtab.tmp, it's created with the group id of the user running mount.ecryptfs_private.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

debiandebian/ecryptfs-utils< ecryptfs-utils 92-1 (bookworm)
Debianecryptfs/ecryptfs-utils< 92-1+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-r6pf-mxwq-6rrh: When mount2022-04-22
OSV
CVE-2011-3145: When mount2019-04-22

📋Vendor Advisories

3
Red Hat
ecryptfs-utils: incorrect mtab group ownership2011-08-23
Ubuntu
eCryptfs vulnerability2011-08-23
Debian
CVE-2011-3145: ecryptfs-utils - When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doe...2011

📄Research Papers

1
arXiv
Timeloops: Automatic System Call Policy Learning for Containerized Microservices2022-09-26

💬Community

1
Bugzilla
CVE-2011-3145 ecryptfs-utils: incorrect mtab group ownership2011-08-23