CVE-2011-1675

EUVD-2011-1675
mount in util-linux 2.19 and earlier attempts to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, which allows local users to trigger corruption of the /etc/mtab file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
3.3 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 11%
Affected Products (NVD)
VendorProductVersion
linuxutil-linux
𝑥
≤ 2.19
linuxutil-linux
2.2
linuxutil-linux
2.5
linuxutil-linux
2.7
linuxutil-linux
2.8
linuxutil-linux
2.9
linuxutil-linux
2.10
linuxutil-linux
2.11
linuxutil-linux
2.12
linuxutil-linux
2.12:pre
linuxutil-linux
2.13
linuxutil-linux
2.13:pre
linuxutil-linux
2.14
linuxutil-linux
2.15
linuxutil-linux
2.16
linuxutil-linux
2.17
linuxutil-linux
2.18
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
util-linux
bookworm
2.38.1-5+deb12u1
fixed
bookworm (security)
2.38.1-5+deb12u1
fixed
bullseye
2.36.1-8+deb11u2
fixed
bullseye (security)
2.36.1-8+deb11u2
fixed
sid
2.40.2-10
fixed
squeeze
no-dsa
trixie
2.40.2-9
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
util-linux
dapper
ignored
hardy
ignored
karmic
ignored
lucid
ignored
maverick
ignored
natty
ignored
oneiric
ignored
precise
not-affected
quantal
ignored
raring
ignored
saucy
ignored
trusty
not-affected
utopic
not-affected
vivid
not-affected
Common Weakness Enumeration
References