When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doesn't also set the effective group id. So when it creates the new version, mtab.tmp, it's created with the group id of the user running mount.ecryptfs_private.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-22T15:35:58.852756Z

Updated: 2024-09-16T22:51:14.054Z

Reserved: 2011-08-16T00:00:00

Link: CVE-2011-3145

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-22T16:29:00.287

Modified: 2019-10-09T23:03:23.897

Link: CVE-2011-3145

cve-icon Redhat

Severity : Moderate

Publid Date: 2011-08-23T00:00:00Z

Links: CVE-2011-3145 - Bugzilla