<?xml version="1.0" encoding="UTF-8" ?>

<bugzilla version="5.2"
          urlbase="https://bugzilla.altlinux.org/"
          
          maintainer="jenya@basealt.ru"
>

    <bug>
          <bug_id>22835</bug_id>
          
          <creation_ts>2010-01-27 00:45:31 +0300</creation_ts>
          <short_desc>CVE-2009-3297: ncpmount/ncpumount privilege escalation</short_desc>
          <delta_ts>2011-03-09 07:59:07 +0300</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>4</classification_id>
          <classification>Development</classification>
          <product>Sisyphus</product>
          <component>ncpfs</component>
          <version>unstable</version>
          <rep_platform>all</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>CLOSED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc>https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2009-3297</bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>security</keywords>
          <priority>P3</priority>
          <bug_severity>blocker</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Dmitry V. Levin">ldv</reporter>
          <assigned_to name="Nobody&apos;s working on this, feel free to take it">nobody</assigned_to>
          <cc>php-coder</cc>
          
          <qa_contact>qa-sisyphus</qa_contact>

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>105996</commentid>
    <comment_count>0</comment_count>
    <who name="Dmitry V. Levin">ldv</who>
    <bug_when>2010-01-27 00:45:31 +0300</bug_when>
    <thetext>Daniel Rosenberg found race conditions in the ncpfs ncpmount and ncpumount utilities.  Local, unprivileged user could use these flaws to conduct symlink attacks, leading to denial of service (ncpumount), disclosure of sensitive information, or, possibly to privilege escalation (ncpmount).</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>119088</commentid>
    <comment_count>1</comment_count>
    <who name="Slava Semushin">php-coder</who>
    <bug_when>2011-03-09 07:59:07 +0300</bug_when>
    <thetext>* Wed Mar 09 2011 Dmitry V. Levin &lt;ldv@altlinux&gt; 2.2.6-alt9
- Imported fix of race conditions in ncpmount/ncpumount operations
 from Fedora (fixes CVE-2009-3297).</thetext>
  </long_desc>
      
      

    </bug>

</bugzilla>