CVE-2010-3879

N/A Unknown
Published: January 22, 2011 Modified: April 29, 2026
View on NVD

Description

FUSE, possibly 2.8.5 and earlier, allows local users to create mtab entries with arbitrary pathnames, and consequently unmount any filesystem, via a symlink attack on the parent directory of the mountpoint of a FUSE filesystem, a different vulnerability than CVE-2010-0789.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=602333
Source: secalert@redhat.com
Exploit Patch Third Party Advisory
http://lists.grok.org.uk/pipermail/full-disclosure/2010-November/077247.html
Source: secalert@redhat.com
Exploit Third Party Advisory
http://openwall.com/lists/oss-security/2010/11/04/8
Source: secalert@redhat.com
Exploit Mailing List Third Party Advisory
http://openwall.com/lists/oss-security/2010/11/05/2
Source: secalert@redhat.com
Exploit Mailing List Third Party Advisory
http://osvdb.org/70520
Source: secalert@redhat.com
Broken Link
http://secunia.com/advisories/42961
Source: secalert@redhat.com
Third Party Advisory
http://secunia.com/advisories/42965
Source: secalert@redhat.com
Third Party Advisory
http://www.halfdog.net/Security/FuseTimerace/
Source: secalert@redhat.com
Exploit Patch Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2013:155
Source: secalert@redhat.com
Third Party Advisory
http://www.securityfocus.com/bid/44623
Source: secalert@redhat.com
Exploit Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/USN-1045-1
Source: secalert@redhat.com
Third Party Advisory
http://www.ubuntu.com/usn/USN-1045-2
Source: secalert@redhat.com
Third Party Advisory
http://www.vupen.com/english/advisories/2011/0181
Source: secalert@redhat.com
Permissions Required
http://www.vupen.com/english/advisories/2011/0302
Source: secalert@redhat.com
Permissions Required
https://bugs.launchpad.net/bugs/670622
Source: secalert@redhat.com
Exploit Third Party Advisory
https://bugzilla.novell.com/show_bug.cgi?id=651598
Source: secalert@redhat.com
Exploit Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=651183
Source: secalert@redhat.com
Exploit Issue Tracking Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/62986
Source: secalert@redhat.com
Third Party Advisory VDB Entry
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=602333
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Patch Third Party Advisory
http://lists.fedoraproject.org/pipermail/package-announce/2011-February/053792.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://lists.grok.org.uk/pipermail/full-disclosure/2010-November/077247.html
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Third Party Advisory
http://lists.opensuse.org/opensuse-security-announce/2011-04/msg00000.html
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://openwall.com/lists/oss-security/2010/11/04/8
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Mailing List Third Party Advisory
http://openwall.com/lists/oss-security/2010/11/05/2
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Mailing List Third Party Advisory
http://osvdb.org/70520
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
http://secunia.com/advisories/42961
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://secunia.com/advisories/42965
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.halfdog.net/Security/FuseTimerace/
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Patch Third Party Advisory
http://www.mandriva.com/security/advisories?name=MDVSA-2013:155
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.securityfocus.com/bid/44623
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Third Party Advisory VDB Entry
http://www.ubuntu.com/usn/USN-1045-1
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.ubuntu.com/usn/USN-1045-2
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
http://www.vupen.com/english/advisories/2011/0181
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
http://www.vupen.com/english/advisories/2011/0302
Source: af854a3a-2127-422b-91ae-364da2661108
Permissions Required
https://bugs.launchpad.net/bugs/670622
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Third Party Advisory
https://bugzilla.novell.com/show_bug.cgi?id=651598
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Issue Tracking
https://bugzilla.redhat.com/show_bug.cgi?id=651183
Source: af854a3a-2127-422b-91ae-364da2661108
Exploit Issue Tracking Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/62986
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory VDB Entry

40 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
9.8%
95th percentile
Exploitation Status
Not in CISA KEV

Weaknesses (CWE)

Affected Vendors

libfuse_project