Upstream information
Description
Race condition in the ecryptfs_mount function in fs/ecryptfs/main.c in the eCryptfs subsystem in the Linux kernel before 3.1 allows local users to bypass intended file permissions via a mount.ecryptfs_private mount with a mismatched uid.NVD CVSS v2 Base Score: 3.3 (AV:L/AC:M/Au:N/C:P/I:P/A:N)
Novell/SUSE information
Novell Bugzilla entry: 709771, 711539 SUSE Security Advisories:- SUSE-SA:2011:046, published Tue, 13 Dec 2011 17:00:00 +0000
- SUSE-SU-2011:0898-1, published Fri, 12 Aug 2011 06:08:16 +0200 (CEST)
- SUSE-SU-2011:1319-1, published Tue, 13 Dec 2011 19:08:30 +0100 (CET)
- SUSE-SU-2011:1319-2, published Wed, 14 Dec 2011 08:08:27 +0100 (CET)
- SUSE-SU-2012:0364-1, published Wed, 14 Mar 2012 00:08:32 +0100 (CET)
- openSUSE-SU-2011:1221-1, published Tue, 8 Nov 2011 15:08:24 +0100 (CET)
- openSUSE-SU-2011:1222-1, published Tue, 8 Nov 2011 16:08:22 +0100 (CET)
List of released packages
| Product(s) | Fixed package version(s) | References |
|---|---|---|
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5495 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5507 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5507 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.ppc sle11-sp1-hae.ppc SAT Patch Nr: 5507 |
| SUSE Linux Enterprise Real Time 11 SP1 |
| slert11-sp1.x86-64 SAT Patch Nr: 5802 |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.x86-64 sles11-sp1.x86-64 sled11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 5511 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.x86-64 sles11-sp1.x86-64 sled11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 5511 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sle11-sp1-hae.x86-64 sles11-sp1.x86-64 sled11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 5511 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sle11-sp1-hae.x86-64 sles11-sp1.x86-64 sled11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 5511 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.x86-64 sles11-sp1.x86-64 sled11-sp1.x86-64 sles11-sp1-vmware.x86-64 SAT Patch Nr: 5511 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5496 |
| openSUSE 11.4 DEBUGINFO |
| |
| openSUSE 11.4 |
| |
| SLE 11 SP1 DEBUGINFO |
| sle11-sp1-hae.ia64 sles11-sp1.ia64 SAT Patch Nr: 5494 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sle11-sp1-hae.ia64 sles11-sp1.ia64 SAT Patch Nr: 5494 |
| SUSE Linux Enterprise Server 11 SP1 |
| sle11-sp1-hae.ia64 sles11-sp1.ia64 SAT Patch Nr: 5494 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5497 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1-vmware.x86 sle11-sp1-hae.x86 sles11-sp1.x86 sled11-sp1.x86 SAT Patch Nr: 5510 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1-vmware.x86 sle11-sp1-hae.x86 sles11-sp1.x86 sled11-sp1.x86 SAT Patch Nr: 5510 |
| SUSE Linux Enterprise Desktop 11 SP1 |
| sles11-sp1-vmware.x86 sle11-sp1-hae.x86 sles11-sp1.x86 sled11-sp1.x86 SAT Patch Nr: 5510 |
| SUSE Linux Enterprise Server 11 SP1 for VMware |
| sles11-sp1-vmware.x86 sle11-sp1-hae.x86 sles11-sp1.x86 sled11-sp1.x86 SAT Patch Nr: 5510 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1-vmware.x86 sle11-sp1-hae.x86 sles11-sp1.x86 sled11-sp1.x86 SAT Patch Nr: 5510 |
| openSUSE 11.3 |
| |
| openSUSE 11.3 |
| |
| openSUSE 11.4 DEBUGINFO |
| |
| openSUSE 11.4 |
| |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5503 |
| SLE 11 SERVER Unsupported Extras |
| Builds SAT Patch Nr: 5502 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| SUSE Linux Enterprise Desktop 11 SP1 SUSE Linux Enterprise Server 11 SP1 SUSE Linux Enterprise Server 11 SP1 for VMware |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| SUSE Linux Enterprise Desktop 11 SP1 SUSE Linux Enterprise Server 11 SP1 SUSE Linux Enterprise Server 11 SP1 for VMware |
| sles11-sp1.ia64 sles11-sp1-vmware.x86 sled11-sp1.x86-64 sles11-sp1.x86 sles11-sp1.x86-64 sles11-sp1-vmware.x86-64 sled11-sp1.x86 sles11-sp1.ppc sles11-sp1.s390x SAT Patch Nr: 4956 |
| openSUSE 11.3 |
| |
| openSUSE 11.3 |
| |
| SLE 11 SP1 DEBUGINFO |
| sles11-sp1.s390x sle11-sp1-hae.s390x SAT Patch Nr: 5493 |
| SUSE Linux Enterprise High Availability Extension 11 SP1 |
| sles11-sp1.s390x sle11-sp1-hae.s390x SAT Patch Nr: 5493 |
| SUSE Linux Enterprise Server 11 SP1 |
| sles11-sp1.s390x sle11-sp1-hae.s390x SAT Patch Nr: 5493 |
