CVE-2018-7738
07.03.2018, 02:29
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name, which is mishandled during a umount command (within Bash) by a different user, as demonstrated by logging in as root and entering umount followed by a tab character for autocompletion.Enginsight
Vendor | Product | Version |
---|---|---|
kernel | util-linux | 𝑥 ≤ 2.31 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
bash-completion |
| ||||||||||||||||
util-linux |
|

Ubuntu Releases
Ubuntu Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
bash-completion |
| ||||||||||||||||
util-linux |
|
References