CVE-2007-5191

Impact:
Moderate
Public Date:
2007-09-20
Bugzilla:
320041: CVE-2007-5191 util-linux (u)mount doesn't drop privileges properly when calling helpers

The MITRE CVE dictionary describes this issue as:

mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the wrong order and do not check the return values, which might allow attackers to gain privileges via helpers such as mount.nfs.

Find out more about CVE-2007-5191 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

Updates are available to address this issue:
https://rhn.redhat.com/errata/RHSA-2007-0969.html

Red Hat Security Errata

Platform Errata Release Date
Red Hat Enterprise Linux 3 (util-linux) RHSA-2007:0969 2007-11-15
Red Hat Enterprise Linux 5 (util-linux) RHSA-2007:0969 2007-11-15
Red Hat Enterprise Linux 4 (util-linux) RHSA-2007:0969 2007-11-15

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.