CVE-2021-3995
published 2022-08-23CVE-2021-3995: A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows…
PriorityP420medium5.5CVSS 3.1
AVLACLPRLUINSUCNINAH
EPSS
0.63%
46.2th percentile
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use this flaw to cause a denial of service to applications that use the affected filesystems.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | util-linux | < util-linux 2.37.3-1 (bookworm) | util-linux 2.37.3-1 (bookworm) |
| fedoraproject | fedora | — | — |
| kernel | util-linux | — | — |
| kernel | util-linux | >= 0 < 2.36.1-8+deb11u1 | 2.36.1-8+deb11u1 |
| kernel | util-linux | >= 0 < 2.37.3-1 | 2.37.3-1 |
| kernel | util-linux | >= 0 < 2.37.3-1 | 2.37.3-1 |
| kernel | util-linux | >= 0 < 2.37.3-1 | 2.37.3-1 |
| kernel | util-linux | >= 2.34 < 2.37.3 | 2.37.3 |
| msrc | cm1_util-linux_2.32.1-7_on_cbl_mariner_1.0 | — | — |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_msrc5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2021-3995: A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem
osv·2022-08-23·CVSS 5.5
CVE-2021-3995 [MEDIUM] CVE-2021-3995: A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use this flaw to cause a denial of service to applications that use the affected filesystems.
Microsoft
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount
vendor_msrc·2022-08-09·CVSS 5.5
CVE-2021-3995 [MEDIUM] CWE-552 A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use this flaw to cause a denial of service to applications that use the affected filesystems.
FAQ: Is Azure Linux the only Microsoft product that includes this open-source library and is therefore potentially affected by this vulnerability?
One of the main benefits to our customers who choose to use the Azure Linux distro is the commitment to keep it up to date with the most recent and most secure versions of the open source libraries with which th
Ubuntu
util-linux vulnerabilities
vendor_ubuntu·2022-02-09
CVE-2021-3995 util-linux vulnerabilities
Title: util-linux vulnerabilities
Summary: util-linux could be made to unmount FUSE filesystems belonging to other
users.
It was discovered that util-linux incorrectly handled unmounting FUSE
filesystems. A local attacker could possibly use this issue to unmount
FUSE filesystems belonging to other users.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid
vendor_redhat·2022-01-24·CVSS 5.5
CVE-2021-3995 [MEDIUM] CWE-552 util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid
util-linux: Unauthorized unmount of FUSE filesystems belonging to users with similar uid
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use this flaw to cause a denial of service to applications that use the affected filesystems.
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID t
Debian
CVE-2021-3995: util-linux - A logic error was found in the libmount library of util-linux in the function th...
vendor_debian·2021·CVSS 5.5
CVE-2021-3995 [MEDIUM] CVE-2021-3995: util-linux - A logic error was found in the libmount library of util-linux in the function th...
A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong to certain other users who have a UID that is a prefix of the UID of the attacker in its string form. An attacker may use this flaw to cause a denial of service to applications that use the affected filesystems.
Scope: local
bookworm: resolved (fixed in 2.37.3-1)
bullseye: resolved (fixed in 2.36.1-8+deb11u1)
forky: resolved (fixed in 2.37.3-1)
sid: resolved (fixed in 2.37.3-1)
trixie: resolved (fixed in 2.37.3-1)
No detection rules found.
No public exploits indexed.
http://packetstormsecurity.com/files/170176/snap-confine-must_mkdir_and_open_with_perms-Race-Condition.htmlhttp://seclists.org/fulldisclosure/2022/Dec/4http://www.openwall.com/lists/oss-security/2022/11/30/2https://bugzilla.redhat.com/show_bug.cgi?id=2024631https://access.redhat.com/security/cve/CVE-2021-3995https://github.com/util-linux/util-linux/commit/57202f5713afa2af20ffbb6ab5331481d0396f8dhttps://mirrors.edge.kernel.org/pub/linux/utils/util-linux/v2.37/v2.37.3-ReleaseNoteshttps://security.gentoo.org/glsa/202401-08https://security.netapp.com/advisory/ntap-20221209-0002/https://www.openwall.com/lists/oss-security/2022/01/24/2http://packetstormsecurity.com/files/170176/snap-confine-must_mkdir_and_open_with_perms-Race-Condition.htmlhttp://seclists.org/fulldisclosure/2022/Dec/4http://www.openwall.com/lists/oss-security/2022/11/30/2https://bugzilla.redhat.com/show_bug.cgi?id=2024631https://access.redhat.com/security/cve/CVE-2021-3995https://github.com/util-linux/util-linux/commit/57202f5713afa2af20ffbb6ab5331481d0396f8dhttps://mirrors.edge.kernel.org/pub/linux/utils/util-linux/v2.37/v2.37.3-ReleaseNoteshttps://security.gentoo.org/glsa/202401-08https://security.netapp.com/advisory/ntap-20221209-0002/https://www.openwall.com/lists/oss-security/2022/01/24/2
2022-08-23
Published