CVE-2011-3151
22.04.2019, 16:29
The Ubuntu SELinux initscript before version 1:0.10 used touch to create a lockfile in a world-writable directory. If the OS kernel does not have symlink protections then an attacker can cause a zero byte file to be allocated on any writable filesystem.Enginsight
Vendor | Product | Version |
---|---|---|
canonical | selinux | 𝑥 < 1\:0.10 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration