vendor:
N/A
by:
zx2c4
7.8
CVSS
HIGH
Race Condition
362
CWE
Product Name: N/A
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Linux
2011
.80 Calibrer Assault Mount
This exploit uses a race condition toggler to mount from non-block devices. It creates an overlay container, mounts the staging using the race condition toggler, prepares the overlay with /etc/pam.d modification, and unmounts the staging. Finally, it cleans up the overlay container.
Mitigation:
Ensure that the system is running the latest version of the software and that all security patches are applied.