Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 514
Alerts This Week
Warning Icon 1 514

Ubuntu 11.04 USN-1196-1 Critical: eCryptfs Denial Of Service

ubuntu
Calendar Grey August 23, 2011
Scroller Ubuntu
A security flaw in the implementation of eCryptfs may allow an assailant to leverage configuration errors, resulting in potential downtime on Ubuntu platforms. Immediate patching recommended.
An attacker could use eCryptfs to unmount arbitrary locations and cause a denial of service.

Summary

An attacker could use eCryptfs to unmount arbitrary locations and cause a

denial of service.

Software Description:

- ecryptfs-utils: ecryptfs cryptographic filesystem (utilities)

Details:

It was discovered that eCryptfs incorrectly handled permissions when

modifying the mtab file. A local attacker could use this flaw to manipulate

the mtab file, and possibly unmount arbitrary locations, leading to a

denial of service.

Update Instructions

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 11.04:
  ecryptfs-utils                  87-0ubuntu1.2

Ubuntu 10.10:
  ecryptfs-utils                  83-0ubuntu3.2.10.10.2

Ubuntu 10.04 LTS:
  ecryptfs-utils                  83-0ubuntu3.2.10.04.2

In general, a standard system update will make all the necessary changes.

References

CVE-2011-3145

Severity
critical
Lowest
Low
Medium
High
Critical

August 23, 2011

Package Information

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.