|
|
Subscribe / Log in / New account

mountall: arbitrary code execution

Package(s):mountall CVE #(s):CVE-2010-2961
Created:September 9, 2010 Updated:September 15, 2010
Description:

From the Ubuntu advisory:

Alasdair MacGregor discovered that mountall created a udev rule file with world-writable permissions. A local attacker could exploit this under certain conditions to cause udev to execute arbitrary commands as the root user.

Alerts:
Ubuntu USN-985-1 mountall 2010-09-08

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds