[USN-5279-1] util-linux vulnerabilities

Severity Medium
Affected Packages 36
CVEs 2

util-linux could be made to unmount FUSE filesystems belonging to other users.

It was discovered that util-linux incorrectly handled unmounting FUSE
filesystems. A local attacker could possibly use this issue to unmount
FUSE filesystems belonging to other users.

Package Affected Version
pkg:deb/ubuntu/uuid-runtime?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/uuid-runtime?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/uuid-dev?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/uuid-dev?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/util-linux?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/util-linux?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/util-linux-locales?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/util-linux-locales?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/rfkill?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/rfkill?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/mount?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/mount?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libuuid1?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libuuid1?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libsmartcols1?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libsmartcols1?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libsmartcols-dev?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libsmartcols-dev?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libmount1?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libmount1?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libmount-dev?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libmount-dev?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libfdisk1?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libfdisk1?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libfdisk-dev?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libfdisk-dev?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libblkid1?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libblkid1?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/libblkid-dev?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/libblkid-dev?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/fdisk?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/fdisk?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/eject?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/bsdutils?distro=impish < 2.36.1-8ubuntu2.2
pkg:deb/ubuntu/bsdutils?distro=focal < 2.34-0.1ubuntu9.3
pkg:deb/ubuntu/bsdextrautils?distro=impish < 2.36.1-8ubuntu2.2
ID
USN-5279-1
Severity
medium
URL
https://ubuntu.com/security/notices/USN-5279-1
Published
2022-02-09T13:26:34
(2 years ago)
Modified
2022-02-09T13:26:34
(2 years ago)
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/uuid-runtime?distro=impish ubuntu uuid-runtime < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/uuid-runtime?distro=focal ubuntu uuid-runtime < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/uuid-dev?distro=impish ubuntu uuid-dev < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/uuid-dev?distro=focal ubuntu uuid-dev < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/util-linux?distro=impish ubuntu util-linux < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/util-linux?distro=focal ubuntu util-linux < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/util-linux-locales?distro=impish ubuntu util-linux-locales < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/util-linux-locales?distro=focal ubuntu util-linux-locales < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/rfkill?distro=impish ubuntu rfkill < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/rfkill?distro=focal ubuntu rfkill < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/mount?distro=impish ubuntu mount < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/mount?distro=focal ubuntu mount < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libuuid1?distro=impish ubuntu libuuid1 < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libuuid1?distro=focal ubuntu libuuid1 < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libsmartcols1?distro=impish ubuntu libsmartcols1 < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libsmartcols1?distro=focal ubuntu libsmartcols1 < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libsmartcols-dev?distro=impish ubuntu libsmartcols-dev < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libsmartcols-dev?distro=focal ubuntu libsmartcols-dev < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libmount1?distro=impish ubuntu libmount1 < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libmount1?distro=focal ubuntu libmount1 < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libmount-dev?distro=impish ubuntu libmount-dev < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libmount-dev?distro=focal ubuntu libmount-dev < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libfdisk1?distro=impish ubuntu libfdisk1 < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libfdisk1?distro=focal ubuntu libfdisk1 < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libfdisk-dev?distro=impish ubuntu libfdisk-dev < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libfdisk-dev?distro=focal ubuntu libfdisk-dev < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libblkid1?distro=impish ubuntu libblkid1 < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libblkid1?distro=focal ubuntu libblkid1 < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/libblkid-dev?distro=impish ubuntu libblkid-dev < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/libblkid-dev?distro=focal ubuntu libblkid-dev < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/fdisk?distro=impish ubuntu fdisk < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/fdisk?distro=focal ubuntu fdisk < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/eject?distro=impish ubuntu eject < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/bsdutils?distro=impish ubuntu bsdutils < 2.36.1-8ubuntu2.2 impish
Affected pkg:deb/ubuntu/bsdutils?distro=focal ubuntu bsdutils < 2.34-0.1ubuntu9.3 focal
Affected pkg:deb/ubuntu/bsdextrautils?distro=impish ubuntu bsdextrautils < 2.36.1-8ubuntu2.2 impish
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...