Search CVE reports


Toggle filters

11 – 20 of 29 results


CVE-2021-3996

Medium priority
Fixed

A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows a local user on a vulnerable system to unmount other users' filesystems...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Fixed Fixed Not affected
Show less packages

CVE-2021-3995

Medium priority
Fixed

A logic error was found in the libmount library of util-linux in the function that allows an unprivileged user to unmount a FUSE filesystem. This flaw allows an unprivileged local attacker to unmount FUSE filesystems that belong...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Fixed Fixed Not affected
Show less packages

CVE-2021-37600

Low priority

Some fixes available 1 of 2

An integer overflow in util-linux through 2.37.1 can potentially cause a buffer overflow if an attacker were able to use system resources in a way that leads to a large number in the /proc/sysvipc/sem file. NOTE: this...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Fixed Not affected Not affected
Show less packages

CVE-2018-7738

Negligible priority

Some fixes available 1 of 6

In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name, which is mishandled during a umount command (within Bash) by a different user,...

2 affected packages

bash-completion, util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bash-completion Not affected Not affected
util-linux Not affected Fixed
Show less packages

CVE-2015-5224

Medium priority
Not affected

The mkostemp function in login-utils in util-linux when used incorrectly allows remote attackers to cause file name collision and possibly other attacks.

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux
Show less packages

CVE-2016-5011

Low priority

Some fixes available 1 of 7

The parse_dos_extended function in partitions/dos.c in the libblkid library in util-linux allows physically proximate attackers to cause a denial of service (memory consumption) via a crafted MSDOS partition table with an extended...

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2014-9114

Low priority
Vulnerable

Blkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code.

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2017-2616

Medium priority

Some fixes available 8 of 13

A race condition was found in util-linux before 2.32.1 in the way su handled the management of child processes. A local authenticated attacker could use this flaw to kill other processes with root privileges under specific conditions.

2 affected packages

shadow, util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
shadow Fixed
util-linux Not affected
Show less packages

CVE-2016-2779

Low priority
Ignored

runuser in util-linux allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.

1 affected package

util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
util-linux Not affected Not affected Not affected
Show less packages

CVE-2015-5218

Low priority
Ignored

Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.

2 affected packages

bsdmainutils, util-linux

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
bsdmainutils Not affected Not affected Not affected
util-linux Not affected Not affected Not affected
Show less packages