CVE-2011-1676: Low severity suse util-linux vulnerability
Common Vulnerabilities and Exposures assigned an identifier CVE-2011-1676 to the following vulnerability:
Name: CVE-2011-1676 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-1676 Assigned: 20110409 Reference: http://openwall.com/lists/oss-security/2011/03/04/11 Reference: http://openwall.com/lists/oss-security/2011/03/04/9 Reference: http://openwall.com/lists/oss-security/2011/03/04/10 Reference: http://openwall.com/lists/oss-security/2011/03/04/12 Reference: http://openwall.com/lists/oss-security/2011/03/05/3 Reference: http://openwall.com/lists/oss-security/2011/03/05/7 Reference: http://openwall.com/lists/oss-security/2011/03/07/9 Reference: http://openwall.com/lists/oss-security/2011/03/14/5 Reference: http://openwall.com/lists/oss-security/2011/03/14/7 Reference: http://openwall.com/lists/oss-security/2011/03/14/16 Reference: http://openwall.com/lists/oss-security/2011/03/15/6 Reference: http://openwall.com/lists/oss-security/2011/03/22/4 Reference: http://openwall.com/lists/oss-security/2011/03/22/6 Reference: http://openwall.com/lists/oss-security/2011/03/31/3 Reference: http://openwall.com/lists/oss-security/2011/03/31/4 Reference: http://openwall.com/lists/oss-security/2011/04/01/2 Reference: https://bugzilla.redhat.com/showbug.cgi?id=688980
mount in util-linux 2.19 and earlier does not remove the /etc/mtab.tmp file after a failed attempt to add a mount entry, which allows local users to trigger corruption of the /etc/mtab file via multiple invocations.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1676?
CVE-2011-1676 has a severity rating that indicates it can allow local users to cause a denial of service.
How do I fix CVE-2011-1676?
To fix CVE-2011-1676, you should upgrade the util-linux package to a version greater than 2.19.
Which software versions are affected by CVE-2011-1676?
CVE-2011-1676 affects multiple versions of util-linux, specifically from 2.2 to 2.19 inclusive.
Is CVE-2011-1676 exploitable remotely?
CVE-2011-1676 is not remotely exploitable, as it requires local access to the system.
What are the potential impacts of CVE-2011-1676?
The potential impacts of CVE-2011-1676 include system crashes and denial of service for users.