2.1
CVSSv2

CVE-2011-1828

Published: 16/05/2011 Updated: 17/08/2017
CVSS v2 Base Score: 2.1 | Impact Score: 2.9 | Exploitability Score: 3.9
VMScore: 187
Vector: AV:L/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

usb-creator-helper in usb-creator prior to 0.2.28.3 does not enforce intended PolicyKit restrictions, which allows local users to perform arbitrary unmount operations via the UnmountFile method in a dbus-send command.

Vulnerable Product Search on Vulmon Subscribe to Product

evan dandrea usb-creator 0.2.23

evan dandrea usb-creator 0.2.22

evan dandrea usb-creator 0.2.15

evan dandrea usb-creator 0.2.14

evan dandrea usb-creator 0.2.13

evan dandrea usb-creator 0.2.6

evan dandrea usb-creator 0.2.27

evan dandrea usb-creator 0.2.26

evan dandrea usb-creator 0.2.19

evan dandrea usb-creator 0.2.18

evan dandrea usb-creator 0.2.10

evan dandrea usb-creator 0.2.9

evan dandrea usb-creator 0.2.2

evan dandrea usb-creator 0.2.1

evan dandrea usb-creator 0.1.11

evan dandrea usb-creator 0.1.10

evan dandrea usb-creator 0.1.2

evan dandrea usb-creator 0.1.1

evan dandrea usb-creator

evan dandrea usb-creator 0.2.21

evan dandrea usb-creator 0.2.20

evan dandrea usb-creator 0.2.12

evan dandrea usb-creator 0.2.11

evan dandrea usb-creator 0.2.4

evan dandrea usb-creator 0.2.3

evan dandrea usb-creator 0.1.13

evan dandrea usb-creator 0.1.12

evan dandrea usb-creator 0.1.4

evan dandrea usb-creator 0.1.3

evan dandrea usb-creator 0.2.5

evan dandrea usb-creator 0.1.15

evan dandrea usb-creator 0.1.14

evan dandrea usb-creator 0.1.6

evan dandrea usb-creator 0.1.5

evan dandrea usb-creator 0.2.25

evan dandrea usb-creator 0.2.24

evan dandrea usb-creator 0.2.17

evan dandrea usb-creator 0.2.16

evan dandrea usb-creator 0.2.8

evan dandrea usb-creator 0.2.7

evan dandrea usb-creator 0.2.0

evan dandrea usb-creator 0.1.16

evan dandrea usb-creator 0.1.9

evan dandrea usb-creator 0.1.8

evan dandrea usb-creator 0.1.7

evan dandrea usb-creator 0.1

Vendor Advisories

An attacker could use usb-creator to unmount arbitrary disks or perform other unauthorized disk operations ...