CVE Vulnerabilities

CVE-2014-1421

Published: Nov 25, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

mountall 1.54, as used in Ubuntu 14.10, does not properly handle the umask when using the mount utility, which allows local users to bypass intended access restrictions via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
Ubuntu_linuxCanonical14.10 (including)14.10 (including)
MountallUbuntudevel*
MountallUbuntuutopic*

References