LWN.net Logo

fuse: denial of service

Package(s):fuse CVE #(s):CVE-2011-0541 CVE-2011-0542 CVE-2011-0543
Created:March 1, 2011 Updated:July 22, 2011
Description: From the Ubuntu advisory:

It was discovered that FUSE would incorrectly follow symlinks when checking mountpoints under certain conditions. A local attacker, with access to use FUSE, could unmount arbitrary locations, leading to a denial of service.

Alerts:
Scientific Linux SL-fuse-20110720 2011-07-20
Red Hat RHSA-2011:1083-01 2011-07-20
SUSE SUSE-SR:2011:005 2011-04-01
openSUSE openSUSE-SU-2011:0264-1 2011-03-31
openSUSE openSUSE-SU-2011:0265-1 2011-03-31
Ubuntu USN-1077-1 2011-02-28
Mageia MGASA-2012-0339 2012-11-23

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds