USN-4512-1: util-linux vulnerability
17 September 2020
util-linux could be made to run programs when performing bash completion.
- util-linux - miscellaneous system utilities
It was discovered that the umount bash completion script shipped in
util-linux incorrectly handled certain mountpoints. If a local attacker
were able to create arbitrary mountpoints, another user could be tricked
into executing arbitrary code when attempting to run the umount command
with bash completion.