Back to Database
Status published
Low
CVE-2011-0541
fuse 2.8.5 and earlier does not properly handle when /etc/mtab...
Vulnerability Description
fuse 2.8.5 and earlier does not properly handle when /etc/mtab cannot be updated, which allows local users to unmount arbitrary directories via a symlink attack.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2011-0541
Credits & Attribution
No credits recorded in the NVD database.
References
- http://fuse.git.sourceforge.net/git/gitweb.cgi?p=fuse/fuse%3Ba=commit%3Bh=bf5ffb5fd8558bd799791834def431c0cee5a11f
- http://www.openwall.com/lists/oss-security/2011/02/02/2
- http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.html
- http://www.openwall.com/lists/oss-security/2011/02/03/5
- http://www.openwall.com/lists/oss-security/2011/02/08/4
More from fuse
View All →CVE-2011-0543
Certain legacy functionality in fusermount in fuse 2.8.5 and earlier,...
Low
3.3
CVE-2011-0542
fusermount in fuse 2.8.5 and earlier does not perform a...
Low
3.3
CVE-2010-0789
fusermount in FUSE before 2.7.5, and 2.8.x before 2.8.2, allows...
Low
3.3
CVE-2005-1858
FUSE 2.x before 2.3.0 does not properly clear previously used...
Low
2.1
Affected Vendor
fuse
View all reports →Affected Software
fuse
Vulnerable Versions:
0, 1.9, 2.0, 2.1, 2.2, 2.2.1, 2.3, 2.3.0, 2.4.0, 2.4.1, 2.4.2, 2.5.0, 2.5.1, 2.5.2, 2.5.3, 2.6.0, 2.6.1, 2.6.3, 2.6.5, 2.7.0, 2.7.1, 2.7.2, 2.7.3, 2.7.4, 2.7.5, 2.7.6, 2.8.0, 2.8.1, 2.8.2, 2.8.3, 2.8.4
Timeline
Official Publish:
September 2nd, 2011
Last Modified:
August 6th, 2024
Added to House:
July 19th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.