Return to CVE list

CVE-2007-5191

7.2
Critical

CVE-2007-5191

secalert@redhat.com
Modified

Description

mount and umount in util-linux and loop-aes-utils call the setuid and setgid functions in the wrong order and do not check the return values, which might allow attackers to gain privileges via helpers such as mount.nfs.

Exploits

No known exploits found for this CVE.

Search Exploit-DB

References

af854a3a-2127-422b-91ae-364da2661108
http://bugs.gentoo.org/show_bug.cgi?id=195390
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27104
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27122
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27145
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27188
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27283
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27354
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27399
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/27687
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/28348
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/28349
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/28368
af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/28469
af854a3a-2127-422b-91ae-364da2661108
http://security.gentoo.org/glsa/glsa-200710-18.xml
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2008/dsa-1449
af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2008/dsa-1450
af854a3a-2127-422b-91ae-364da2661108
http://www.securityfocus.com/bid/25973
af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id?1018782
af854a3a-2127-422b-91ae-364da2661108
http://www.ubuntu.com/usn/usn-533-1
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2007/3417
af854a3a-2127-422b-91ae-364da2661108
http://www.vupen.com/english/advisories/2008/0064
af854a3a-2127-422b-91ae-364da2661108
https://bugzilla.redhat.com/show_bug.cgi?id=320041
af854a3a-2127-422b-91ae-364da2661108
https://issues.rpath.com/browse/RPL-1757