CVE-2013-0157

Severity CVSS v4.0:
Pending analysis
Type:
CWE-200 Information Leak / Disclosure
Publication date:
21/01/2014
Last modified:
11/04/2025

Description

(a) mount and (b) umount in util-linux 2.14.1, 2.17.2, and probably other versions allow local users to determine the existence of restricted directories by (1) using the --guess-fstype command-line option or (2) attempting to mount a non-existent device, which generates different error messages depending on whether the directory exists.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:kernel:util-linux:2.14.1:*:*:*:*:*:*:*
cpe:2.3:a:kernel:util-linux:2.17.2:*:*:*:*:*:*:*