Insecure Permissions in ecryptfs-recover-private Vulnerability

Insecure Permissions in ecryptfs-recover-private Vulnerability

CVE-2011-1836 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

utils/ecryptfs-recover-private in ecryptfs-utils before 90 does not establish a subdirectory with safe permissions, which might allow local users to bypass intended access restrictions via standard filesystem operations during the recovery process.

Learn more about our User Device Pen Test.