Jann Horn discovered that mount.ecryptfs_private would mount over certain directories in the proc filesystem. A local attacker could use this to escalate their privileges. (CVE-2016-1572)
{ "availability": "No subscription required", "binaries": [ { "binary_name": "ecryptfs-utils", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "ecryptfs-utils-dbg", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "ecryptfs-utils-dbgsym", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "libecryptfs-dev", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "libecryptfs-dev-dbgsym", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "libecryptfs0", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "libecryptfs0-dbgsym", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "python-ecryptfs", "binary_version": "104-0ubuntu1.14.04.4" }, { "binary_name": "python-ecryptfs-dbgsym", "binary_version": "104-0ubuntu1.14.04.4" } ] }