Comment 6 for bug 1390183

Revision history for this message
Launchpad Janitor (janitor) wrote :

This bug was fixed in the package mountall - 2.54ubuntu0.14.10.1

---------------
mountall (2.54ubuntu0.14.10.1) utopic-security; urgency=medium

  * SECURITY UPDATE: insecure mount permissions (LP: #1390183)
    - The mount utility now honours process umask when mounting certain
      filesystems, resulting in them being potentially mounted with
      inappropriate permissions.
    - src/mountall.c: don't specifically set umask when running as a
      daemon, inherit the umask Upstart sets instead.
    - CVE-2014-1421
 -- Marc Deslauriers <email address hidden> Thu, 13 Nov 2014 13:21:39 -0500