Race condition issues were found in Calibre at devices/linux_mount_helper.c allowing unprivileged users the ability to mount any device to anywhere.
References
Link | Resource |
---|---|
https://bugs.launchpad.net/calibre/+bug/885027 | Exploit Issue Tracking Third Party Advisory |
https://git.zx2c4.com/calibre-mount-helper-exploit/about/ | Exploit Third Party Advisory |
https://lwn.net/Articles/464824/ | Not Applicable Third Party Advisory |
https://www.openwall.com/lists/oss-security/2011/11/02/2 | Mailing List Third Party Advisory |
https://bugs.launchpad.net/calibre/+bug/885027 | Exploit Issue Tracking Third Party Advisory |
https://git.zx2c4.com/calibre-mount-helper-exploit/about/ | Exploit Third Party Advisory |
https://lwn.net/Articles/464824/ | Not Applicable Third Party Advisory |
https://www.openwall.com/lists/oss-security/2011/11/02/2 | Mailing List Third Party Advisory |
Configurations
History
21 Nov 2024, 01:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://bugs.launchpad.net/calibre/+bug/885027 - Exploit, Issue Tracking, Third Party Advisory | |
References | () https://git.zx2c4.com/calibre-mount-helper-exploit/about/ - Exploit, Third Party Advisory | |
References | () https://lwn.net/Articles/464824/ - Not Applicable, Third Party Advisory | |
References | () https://www.openwall.com/lists/oss-security/2011/11/02/2 - Mailing List, Third Party Advisory |
Information
Published : 2021-10-27 01:15
Updated : 2024-11-21 01:31
NVD link : CVE-2011-4126
Mitre link : CVE-2011-4126
CVE.ORG link : CVE-2011-4126
JSON object : View
Products Affected
calibre-ebook
- calibre
CWE
CWE-367
Time-of-check Time-of-use (TOCTOU) Race Condition