USN-1196-1: eCryptfs vulnerability
23 August 2011
An attacker could use eCryptfs to unmount arbitrary locations and cause a denial of service.
Releases
Packages
- ecryptfs-utils - ecryptfs cryptographic filesystem (utilities)
Details
It was discovered that eCryptfs incorrectly handled permissions when
modifying the mtab file. A local attacker could use this flaw to manipulate
the mtab file, and possibly unmount arbitrary locations, leading to a
denial of service.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 11.04
Ubuntu 10.10
Ubuntu 10.04
In general, a standard system update will make all the necessary changes.