REDHAT-BUG-729465: Medium severity Openwall eCryptfs vulnerability

Published Aug 9, 2011
·
Updated

A number of flaws were reported [1] in eCryptfs that could allow a user to mount or unmount arbitrary locations, and possibly disclose confidential information:

Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to mount to arbitrary locations, leading to privilege escalation. (CVE-2011-1831)

Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested mountpoint. A local attacker could use this flaw to unmount to arbitrary locations, leading to a denial of service. (CVE-2011-1832)

Vasiliy Kulikov of Openwall and Dan Rosenberg discovered that eCryptfs incorrectly validated permissions on the requested source directory. A local attacker could use this flaw to mount an arbitrary directory, possibly leading to information disclosure. Note that this flaw also requires a fix in the kernel to be complete. (CVE-2011-1833)

Dan Rosenberg and Marc Deslauriers discovered that eCryptfs incorrectly handled modifications to the mtab file when an error occurs. A local attacker could use this flaw to corrupt the mtab file, and possibly unmount arbitrary locations, leading to a denial of service. (CVE-2011-1834)

Marc Deslauriers discovered that eCryptfs incorrectly handled keys when setting up an encrypted private directory. A local attacker could use this flaw to manipulate keys during creation of a new user. (CVE-2011-1835)

Marc Deslauriers discovered that eCryptfs incorrectly handled permissions during recovery. A local attacker could use this flaw to possibly access another user's data during the recovery process. (CVE-2011-1836)

Vasiliy Kulikov of Openwall discovered that eCryptfs incorrectly handled lock counters. A local attacker could use this flaw to possibly overwrite arbitrary files. (CVE-2011-1837)

[1] https://launchpad.net/bugs/732628

Affected Software

1 affected component
Openwall eCryptfs

Event History

Aug 9, 2011
Data Sourced
via Red Hat·08:15 PM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-729465?

The severity of REDHAT-BUG-729465 is considered to be high due to the potential for unauthorized access and information disclosure.

2

How do I fix REDHAT-BUG-729465?

To fix REDHAT-BUG-729465, update to the latest version of Openwall eCryptfs where the vulnerabilities have been patched.

3

What types of vulnerabilities are reported in REDHAT-BUG-729465?

REDHAT-BUG-729465 reports permission validation flaws that could allow mounting or unmounting of arbitrary locations.

4

Who discovered the vulnerabilities in REDHAT-BUG-729465?

The vulnerabilities in REDHAT-BUG-729465 were discovered by Vasiliy Kulikov of Openwall and Dan Rosenberg.

5

What impact does REDHAT-BUG-729465 have on information security?

REDHAT-BUG-729465 can potentially lead to the disclosure of confidential information, posing a significant risk to data security.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203