USN-2876-1: eCryptfs vulnerability
20 January 2016
mount.ecryptfs_private could be used to run programs as an administrator.
- ecryptfs-utils - eCryptfs cryptographic filesystem utilities
Jann Horn discovered that mount.ecryptfs_private would mount over certain
directories in the proc filesystem. A local attacker could use this to escalate
their privileges. (CVE-2016-1572)
The problem can be corrected by updating your system to the following package versions:
In general, a standard system update will make all the necessary changes.