Certain legacy functionality in fusermount in fuse 2.8.5 and earlier, when util-linux does not support the --no-canonicalize option, allows local users to bypass intended access restrictions and unmount arbitrary directories via a symlink attack.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-09-02 16:55
Updated : 2023-02-12 17:18
NVD link : CVE-2011-0543
Mitre link : CVE-2011-0543
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
fuse
- fuse