Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.840569
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-1045-2)
Summary:The remote host is missing an update for the 'util-linux' package(s) announced via the USN-1045-2 advisory.
Description:Summary:
The remote host is missing an update for the 'util-linux' package(s) announced via the USN-1045-2 advisory.

Vulnerability Insight:
USN-1045-1 fixed vulnerabilities in FUSE. This update to util-linux adds
support for new options required by the FUSE update.

Original advisory details:

It was discovered that FUSE could be tricked into incorrectly updating the
mtab file when mounting filesystems. A local attacker, with access to use
FUSE, could unmount arbitrary locations, leading to a denial of service.

Affected Software/OS:
'util-linux' package(s) on Ubuntu 8.04, Ubuntu 9.10, Ubuntu 10.04, Ubuntu 10.10.

Solution:
Please install the updated package(s).

CVSS Score:
5.8

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2010-3879
20101102 fusermount: Unmount any filesystem
http://lists.grok.org.uk/pipermail/full-disclosure/2010-November/077247.html
42961
http://secunia.com/advisories/42961
42965
http://secunia.com/advisories/42965
44623
http://www.securityfocus.com/bid/44623
70520
http://osvdb.org/70520
ADV-2011-0181
http://www.vupen.com/english/advisories/2011/0181
ADV-2011-0302
http://www.vupen.com/english/advisories/2011/0302
FEDORA-2011-0854
http://lists.fedoraproject.org/pipermail/package-announce/2011-February/053792.html
MDVSA-2013:155
http://www.mandriva.com/security/advisories?name=MDVSA-2013:155
SUSE-SR:2011:005
http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.html
USN-1045-1
http://www.ubuntu.com/usn/USN-1045-1
USN-1045-2
http://www.ubuntu.com/usn/USN-1045-2
[oss-security] 20101104 CVE request: fuse
http://openwall.com/lists/oss-security/2010/11/04/8
[oss-security] 20101105 Re: CVE request: fuse
http://openwall.com/lists/oss-security/2010/11/05/2
fuse-fusermount-tool-dos(62986)
https://exchange.xforce.ibmcloud.com/vulnerabilities/62986
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=602333
http://www.halfdog.net/Security/FuseTimerace/
https://bugs.launchpad.net/bugs/670622
https://bugzilla.novell.com/show_bug.cgi?id=651598
https://bugzilla.redhat.com/show_bug.cgi?id=651183
CopyrightCopyright (C) 2011 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.