CVE-2011-0543

Publication date 10 February 2011

Last updated 24 July 2024


Ubuntu priority

Certain legacy functionality in fusermount in fuse 2.8.5 and earlier, when util-linux does not support the --no-canonicalize option, allows local users to bypass intended access restrictions and unmount arbitrary directories via a symlink attack.

Status

Package Ubuntu Release Status
fuse 10.10 maverick
Fixed 2.8.4-1ubuntu1.3
10.04 LTS lucid
Fixed 2.8.1-1.1ubuntu3.1
9.10 karmic
Fixed 2.7.4-1.1ubuntu4.5
8.04 LTS hardy
Fixed 2.7.2-1ubuntu2.3
6.06 LTS dapper Ignored end of life

References

Related Ubuntu Security Notices (USN)

    • USN-1077-1
    • FUSE vulnerabilities
    • 28 February 2011

Other references