CVE-2014-1421

Publication date 18 November 2014

Last updated 24 July 2024


Ubuntu priority

mountall 1.54, as used in Ubuntu 14.10, does not properly handle the umask when using the mount utility, which allows local users to bypass intended access restrictions via unspecified vectors.

Read the notes from the security team

Status

Package Ubuntu Release Status
mountall 14.10 utopic
Fixed 2.54ubuntu0.14.10.1
14.04 LTS trusty
Not affected
12.04 LTS precise
Not affected
10.04 LTS lucid
Not affected

Notes


mdeslaur

This is only an issue when combined with the mount utility in utopic and newer.

References

Related Ubuntu Security Notices (USN)

    • USN-2411-1
    • mountall vulnerability
    • 18 November 2014

Other references