CVE-2011-1679

ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, which allows local users to trigger corruption of the /etc/mtab file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.

Date published : 2011-04-09

https://bugzilla.redhat.com/show_bug.cgi?id=688980

http://openwall.com/lists/oss-security/2011/03/04/11