CVE-2010-2192 pmount

Metadata

low
1.9
pmount
CVE-2010-2192
2017-06-18 07:04
CVE-2010-2192
2017-06-16 18:54
2017-04-01 19:11
2017-01-05 20:16

Description

The make_lockdir_name function in policy.c in pmount 0.9.18 allow local users to overwrite arbitrary files via a symlink attack on a file in /var/lock/.

Am I vulnerable?

The constraints below list the versions that this vulnerability is patched in, and versions that are unaffected. If a patch is ready but unrealeased, then it is pending.

Or, you can just let us figure it out for you! Appcanary continously monitor your installed packages, and tell you if any of them are vulnerable.

Sign up for monitoring

Affected package information

Release Package Patched in
buster pmount 0.9.23-1
jessie pmount 0.9.23-1
sid pmount 0.9.23-1
stretch pmount 0.9.23-1
wheezy pmount 0.9.23-1