|
|
| |
|
| |
pam_mount: restriction bypass
| Package(s): | pam_mount |
CVE #(s): | CVE-2008-3970
|
| Created: | September 30, 2008 |
Updated: | October 22, 2008 |
| Description: |
From the Mandriva advisory: pam_mount 0.10 through 0.45, when luserconf is enabled, does not verify mountpoint and source ownership before mounting a user-defined volume, which allows local users to bypass intended access restrictions via a local mount.
|
| Alerts: |
|
( Log in to post comments)
|
|
|