Vulnerabilities > Kernel > Util Linux

DATE CVE VULNERABILITY TITLE RISK
2015-11-09 CVE-2015-5218 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux before 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
local
low complexity
kernel opensuse opensuse-project CWE-119
2.1
2014-01-21 CVE-2013-0157 Information Exposure vulnerability in Kernel Util-Linux 2.14.1/2.17.2
(a) mount and (b) umount in util-linux 2.14.1, 2.17.2, and probably other versions allow local users to determine the existence of restricted directories by (1) using the --guess-fstype command-line option or (2) attempting to mount a non-existent device, which generates different error messages depending on whether the directory exists.
local
low complexity
kernel CWE-200
2.1
2001-12-31 CVE-2001-1494 Link Following vulnerability in multiple products
script command in the util-linux package before 2.11n allows local users to overwrite arbitrary files by setting a hardlink from the typescript log file to any file on the system, then having root execute the script command.
local
low complexity
kernel avaya CWE-59
5.5