CVE-2011-1681

vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would interfere, which allows local users to trigger corruption of this file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.3 UNKNOWN
LOCAL
MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 26%
VendorProductVersion
vmwareopen-vm-tools
𝑥
≤ 8.4.2-261024
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
open-vm-tools
bullseye (security)
2:11.2.5-2+deb11u3
fixed
bullseye
2:11.2.5-2+deb11u3
fixed
squeeze
no-dsa
lenny
no-dsa
bookworm
2:12.2.0-1+deb12u2
fixed
bookworm (security)
2:12.2.0-1+deb12u2
fixed
sid
2:12.4.5-1
fixed
trixie
2:12.4.5-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
open-vm-tools
zesty
not-affected
yakkety
ignored
xenial
not-affected
wily
ignored
vivid
ignored
utopic
ignored
trusty
not-affected
saucy
ignored
raring
ignored
quantal
ignored
precise
ignored
oneiric
ignored
natty
ignored
maverick
ignored
lucid
ignored
karmic
ignored
hardy
dne
dapper
dne
Common Weakness Enumeration
References