Vulnerabilities (CVE)

Filtered by vendor Kernel Subscribe
Filtered by product Util-linux
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2014-9114 3 Fedoraproject, Kernel, Opensuse 3 Fedora, Util-linux, Opensuse 2021-06-29 7.2 HIGH 7.8 HIGH
Blkid in util-linux before 2.26rc-1 allows local users to execute arbitrary code.
CVE-2018-7738 1 Kernel 1 Util-linux 2020-09-25 7.2 HIGH 7.8 HIGH
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name, which is mishandled during a umount command (within Bash) by a different user, as demonstrated by logging in as root and entering umount followed by a tab character for autocompletion.
CVE-2016-2779 1 Kernel 1 Util-linux 2019-01-04 7.2 HIGH 7.8 HIGH
runuser in util-linux allows local users to escape to the parent session via a crafted TIOCSTI ioctl call, which pushes characters to the terminal's input buffer.