CVE-2011-1677: Medium severity suse util-linux vulnerability
Published Apr 10, 2011
·Updated
mount in util-linux 2.19 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors.
Affected Software
17 affected components
Linux util-linux<=2.19
Linux util-linux=2.2
Linux util-linux=2.5
Linux util-linux=2.7
Linux util-linux=2.8
Linux util-linux=2.9
Linux util-linux=2.10
Linux util-linux=2.11
Linux util-linux=2.12
Linux util-linux=2.12-pre
Linux util-linux=2.13
Linux util-linux=2.13-pre
Linux util-linux=2.14
Linux util-linux=2.15
Linux util-linux=2.16
Linux util-linux=2.17
Linux util-linux=2.18
Event History
Apr 10, 2011
CVE Published
via MITRE·01:29 AM
Data Sourced
via MITRE·01:29 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-1677?
CVE-2011-1677 has an unspecified severity rating, indicating potential risks without precise scoring.
2
How does CVE-2011-1677 affect systems?
CVE-2011-1677 allows for a local attack vector due to the improper handling of the /etc/mtab~ lock file.
3
How do I fix CVE-2011-1677?
To mitigate CVE-2011-1677, update the util-linux package to a version later than 2.19.
4
What versions of util-linux are affected by CVE-2011-1677?
CVE-2011-1677 affects util-linux versions 2.19 and earlier.
5
Is there a specific exploit for CVE-2011-1677?
CVE-2011-1677 does not have a publicly documented exploit, but it poses a local security risk.