← Back

CVE-2011-1011

nvd nist
Published: Feb 24, 2011Modified: Apr 29, 2026

JSON object

Loading...
6.9
Vector
AV:L/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 3.4 / Impact: 10.0
Source: NVD

Description

The seunshare_mount function in sandbox/seunshare.c in seunshare in certain Red Hat packages of policycoreutils 2.0.83 and earlier in Red Hat Enterprise Linux (RHEL) 6 and earlier, and Fedora 14 and earlier, mounts a new directory on top of /tmp without assigning root ownership and the sticky bit to this new directory, which allows local users to replace or delete arbitrary /tmp files, and consequently cause a denial of service or possibly gain privileges, by running a setuid application that relies on /tmp, as demonstrated by the ksu application.

Affected (270)

3 products
Policycoreutils
Enterprise Linux
Fedora
Configuration A
270 vulnerable
Vulnerable SoftwareAffected Versions
Redhat
Up to 2.0.83
Version 1.0
Version 1.10
Version 1.12
Version 1.14
Version 1.16
Version 1.18
Version 1.1
Version 1.20
Version 1.21.10
Version 1.21.11
Version 1.21.12
Version 1.21.13
Version 1.21.14
Version 1.21.15
Version 1.21.16
Version 1.21.17
Version 1.21.18
Version 1.21.19
Version 1.21.1
Version 1.21.20
Version 1.21.21
Version 1.21.22
Version 1.21.2
Version 1.21.3
Version 1.21.4
Version 1.21.5
Version 1.21.6
Version 1.21.7
Version 1.21.8
Version 1.21.9
Version 1.22
Version 1.23.10
Version 1.23.11
Version 1.23.1
Version 1.23.2
Version 1.23.3
Version 1.23.4
Version 1.23.5
Version 1.23.6
Version 1.23.7
Version 1.23.8
Version 1.23.9
Version 1.24
Version 1.25.1
Version 1.25.2
Version 1.25.3
Version 1.25.4
Version 1.25.5
Version 1.25.6
Version 1.25.7
Version 1.25.8
Version 1.25.9
Version 1.26
Version 1.27.10
Version 1.27.11
Version 1.27.12
Version 1.27.13
Version 1.27.14
Version 1.27.15
Version 1.27.16
Version 1.27.17
Version 1.27.18
Version 1.27.19
Version 1.27.1
Version 1.27.20
Version 1.27.21
Version 1.27.22
Version 1.27.23
Version 1.27.24
Version 1.27.25
Version 1.27.26
Version 1.27.27
Version 1.27.28
Version 1.27.29
Version 1.27.2
Version 1.27.30
Version 1.27.31
Version 1.27.32
Version 1.27.33
Version 1.27.34
Version 1.27.35
Version 1.27.36
Version 1.27.37
Version 1.27.3
Version 1.27.4
Version 1.27.5
Version 1.27.6
Version 1.27.7
Version 1.27.8
Version 1.27.9
Version 1.28
Version 1.29.10
Version 1.29.11
Version 1.29.12
Version 1.29.13
Version 1.29.14
Version 1.29.15
Version 1.29.16
Version 1.29.17
Version 1.29.18
Version 1.29.19
Version 1.29.1
Version 1.29.20
Version 1.29.21
Version 1.29.22
Version 1.29.23
Version 1.29.24
Version 1.29.25
Version 1.29.26
Version 1.29.27
Version 1.29.28
Version 1.29.2
Version 1.29.3
Version 1.29.4
Version 1.29.5
Version 1.29.6
Version 1.29.7
Version 1.29.8
Version 1.29.9
Version 1.2
Version 1.30.10
Version 1.30.11
Version 1.30.12
Version 1.30.13
Version 1.30.14
Version 1.30.15
Version 1.30.16
Version 1.30.17
Version 1.30.18
Version 1.30.19
Version 1.30.1
Version 1.30.20
Version 1.30.21
Version 1.30.22
Version 1.30.23
Version 1.30.24
Version 1.30.25
Version 1.30.26
Version 1.30.27
Version 1.30.28
Version 1.30.29
Version 1.30.2
Version 1.30.30
Version 1.30.31
Version 1.30.3
Version 1.30.4
Version 1.30.5
Version 1.30.6
Version 1.30.7
Version 1.30.8
Version 1.30.9
Version 1.30
Version 1.32
Version 1.33.10
Version 1.33.11
Version 1.33.12
Version 1.33.13
Version 1.33.14
Version 1.33.15
Version 1.33.16
Version 1.33.1
Version 1.33.2
Version 1.33.3
Version 1.33.4
Version 1.33.5
Version 1.33.6
Version 1.33.7
Version 1.33.8
Version 1.33.9
Version 1.34.0
Version 1.34.1
Version 1.4
Version 1.6
Version 1.8
Version 2.0.0
Version 2.0.10
Version 2.0.11
Version 2.0.12
Version 2.0.13
Version 2.0.14
Version 2.0.15
Version 2.0.16
Version 2.0.17
Version 2.0.18
Version 2.0.19
Version 2.0.1
Version 2.0.20
Version 2.0.21
Version 2.0.22
Version 2.0.23
Version 2.0.24
Version 2.0.25
Version 2.0.26
Version 2.0.27
Version 2.0.28
Version 2.0.29
Version 2.0.2
Version 2.0.30
Version 2.0.31
Version 2.0.32
Version 2.0.33
Version 2.0.34
Version 2.0.35
Version 2.0.36
Version 2.0.37
Version 2.0.38
Version 2.0.39
Version 2.0.3
Version 2.0.40
Version 2.0.41
Version 2.0.42
Version 2.0.43
Version 2.0.44
Version 2.0.45
Version 2.0.46
Version 2.0.47
Version 2.0.48
Version 2.0.49
Version 2.0.4
Version 2.0.50
Version 2.0.51
Version 2.0.52
Version 2.0.53
Version 2.0.54
Version 2.0.55
Version 2.0.56
Version 2.0.57
Version 2.0.58
Version 2.0.59
Version 2.0.5
Version 2.0.60
Version 2.0.61
Version 2.0.62
Version 2.0.63
Version 2.0.64
Version 2.0.65
Version 2.0.66
Version 2.0.67
Version 2.0.68
Version 2.0.69
Version 2.0.6
Version 2.0.70
Version 2.0.71
Version 2.0.72
Version 2.0.73
Version 2.0.74
Version 2.0.75
Version 2.0.76
Version 2.0.77
Version 2.0.78
Version 2.0.79
Version 2.0.7
Version 2.0.80
Version 2.0.81
Version 2.0.82
Version 2.0.8
Version 2.0.9
Redhat
Version 3
Version 4
Version 5
Version 6.0
Redhat
Version 10
Version 12
Version 13
Version 14
Version 6
Version 7
Version 8
Version 9

Related CWEs

References (30)

Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: secalert@redhat.com
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.