Search CVE reports


Toggle filters

11 – 19 of 19 results


CVE-2011-0543

Medium priority

Some fixes available 4 of 5

Certain legacy functionality in fusermount in fuse 2.8.5 and earlier, when util-linux does not support the --no-canonicalize option, allows local users to bypass intended access restrictions and unmount arbitrary directories via a...

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages

CVE-2011-0542

Medium priority

Some fixes available 4 of 5

fusermount in fuse 2.8.5 and earlier does not perform a chdir to / before performing a mount or umount, which allows local users to unmount arbitrary directories via unspecified vectors.

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages

CVE-2011-0541

Medium priority

Some fixes available 4 of 5

fuse 2.8.5 and earlier does not properly handle when /etc/mtab cannot be updated, which allows local users to unmount arbitrary directories via a symlink attack.

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages

CVE-2010-3879

Medium priority

Some fixes available 8 of 10

FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a...

2 affected packages

fuse, util-linux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
util-linux
Show less packages

CVE-2010-0789

Medium priority
Fixed

fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows local users to unmount an arbitrary FUSE filesystem share via a symlink attack on a mountpoint.

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages

CVE-2009-3297

Medium priority

Some fixes available 16 of 24

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-0787, CVE-2010-0788, CVE-2010-0789. Reason: this candidate was intended for one issue in Samba, but it was used for multiple distinct issues, including one...

3 affected packages

fuse, ncpfs, samba

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
ncpfs
samba
Show less packages

CVE-2008-2232

Medium priority
Ignored

The expand_template function in afuse.c in afuse 0.2 allows local users to gain privileges via shell metacharacters in a pathname.

1 affected package

afuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
afuse
Show less packages

CVE-2005-3531

Medium priority
Fixed

fusermount in FUSE before 2.4.1, if installed setuid root, allows local users to corrupt /etc/mtab and possibly modify mount options by performing a mount over a directory whose name contains certain special characters.

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages

CVE-2005-1858

Medium priority
Not affected

FUSE 2.x before 2.3.0 does not properly clear previously used memory from unfilled pages when the filesystem returns a short byte count to a read request, which may allow local users to obtain sensitive information.

1 affected package

fuse

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
fuse
Show less packages