fs/namespace.c in the Linux kernel before 4.0.2 processes MNT_DETACH umount2 system calls without verifying that the MNT_LOCKED flag is unset, which allows local users to bypass intended access restrictions and navigate to filesystem locations beneath a mount by calling umount2 within a user namespace.
References
Configurations
Information
Published : 2016-05-02 03:59
Updated : 2016-08-11 18:59
NVD link : CVE-2014-9717
Mitre link : CVE-2014-9717
JSON object : View
CWE
CWE-284
Improper Access Control
Products Affected
linux
- linux_kernel