REDHAT-BUG-729465: Medium severity Openwall eCryptfs vulnerability
A number of flaws were reported [1] in eCryptfs that could allow a user to mount or unmount arbitrary locations, and possibly disclose confidential information:
Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to mount to arbitrary locations, leading to privilege escalation. (CVE-2011-1831)
Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to unmount to arbitrary locations, leading to a denial of service. (CVE-2011-1832)
Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested source directory. A local attacker could use this flaw to mount an arbitrary directory, possibly leading to information disclosure. Note that this flaw also requires a fix in the kernel to be complete. (CVE-2011-1833)
Dan Rosenberg and Marc Deslauriers discovered that eCryptfs incorrectly handled modifications to the mtab file when an error occurs. A local attacker could use this flaw to corrupt the mtab file, and possibly unmount arbitrary locations, leading to a denial of service. (CVE-2011-1834)
Marc Deslauriers discovered that eCryptfs incorrectly handled keys when setting up an encrypted private directory. A local attacker could use this flaw to manipulate keys during creation of a new user. (CVE-2011-1835)
Marc Deslauriers discovered that eCryptfs incorrectly handled permissions during recovery. A local attacker could use this flaw to possibly access another user's data during the recovery process. (CVE-2011-1836)
Vasiliy Kulikov of Openwall discovered that eCryptfs incorrectly handled lock counters. A local attacker could use this flaw to possibly overwrite arbitrary files. (CVE-2011-1837)
[1] https://launchpad.net/bugs/732628
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-729465?
The severity of REDHAT-BUG-729465 is considered to be high due to the potential for unauthorized access and information disclosure.
How do I fix REDHAT-BUG-729465?
To fix REDHAT-BUG-729465, update to the latest version of Openwall eCryptfs where the vulnerabilities have been patched.
What types of vulnerabilities are reported in REDHAT-BUG-729465?
REDHAT-BUG-729465 reports permission validation flaws that could allow mounting or unmounting of arbitrary locations.
Who discovered the vulnerabilities in REDHAT-BUG-729465?
The vulnerabilities in REDHAT-BUG-729465 were discovered by Vasiliy Kulikov of Openwall and Dan Rosenberg.
What impact does REDHAT-BUG-729465 have on information security?
REDHAT-BUG-729465 can potentially lead to the disclosure of confidential information, posing a significant risk to data security.