CVE-2015-3202

fusermount in FUSE before 2.9.3-15 does not properly clear the environment before invoking (1) mount or (2) umount as root, which allows local users to write to arbitrary files via a crafted LIBMOUNT_MTAB environment variable that is used by mount's debugging feature.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
3.6 UNKNOWN
LOCAL
LOW
AV:L/AC:L/Au:N/C:N/I:P/A:P
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 42%
VendorProductVersion
debiandebian_linux
8.0
fuse_projectfuse
𝑥
≤ 2.9.2
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
fuse
bullseye
2.9.9-5
fixed
bookworm
2.9.9-6
fixed
sid
2.9.9-9
fixed
trixie
2.9.9-9
fixed
ntfs-3g
bullseye
1:2017.3.23AR.3-4+deb11u4
fixed
bullseye (security)
1:2017.3.23AR.3-4+deb11u3
fixed
bookworm
1:2022.10.3-1
fixed
sid
1:2022.10.3-5
fixed
trixie
1:2022.10.3-5
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
fuse
vivid
Fixed 2.9.2-4ubuntu4.15.04.1
released
utopic
Fixed 2.9.2-4ubuntu4.14.10.1
released
trusty
Fixed 2.9.2-4ubuntu4.14.04.1
released
precise
Fixed 2.8.6-2ubuntu2.1
released
ntfs-3g
vivid
Fixed 1:2014.2.15AR.3-1ubuntu0.2
released
utopic
not-affected
trusty
not-affected
precise
not-affected
Common Weakness Enumeration
References