Certain legacy functionality in fusermount in fuse 2.8.5 and earlier, when util-linux does not support the --no-canonicalize option, allows local users to bypass intended access restrictions and unmount arbitrary directories via a symlink attack.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2011-09-02 23:55
Updated : 2023-02-13 01:18
NVD link : CVE-2011-0543
Mitre link : CVE-2011-0543
CVE.ORG link : CVE-2011-0543
JSON object : View
Products Affected
fuse
- fuse
CWE
CWE-264
Permissions, Privileges, and Access Controls