Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Mount.ecrpytfs Private Project Subscribe
Filtered by product Mount.ecrpytfs Private
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2011-3145 1 Mount.ecrpytfs Private Project 1 Mount.ecrpytfs Private 2019-10-09 7.5 HIGH 9.8 CRITICAL
When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doesn't also set the effective group id. So when it creates the new version, mtab.tmp, it's created with the group id of the user running mount.ecryptfs_private.