Logo
componentutil-linux
Name
util-linux
Version
2.37.4
Type
library
Description
A suite of basic system administration utilities
Licenses
GPL-2.0-or-later & LGPL-2.1-or-later & BSD-3-Clause & BSD-4-Clause
PURL
-
CPE
cpe:2.3:*:kernel:util-linux:2.37.4:*:*:*:*:*:*:*

Other Versions#


Project
Branch
Version
master
2.41.3
scarthgap
2.39.3

Patches#


#
Title
Author
Resolve
1
wall: convert homebrew buffering to open_memstream()
наб <nabijaczleweli@nabijaczleweli.xyz>
CVE-2024-28085
2
Update setpwnam.c
Mohamed Maatallah <hotelsmaatallahrecemail@gmail.com>
CVE-2025-14104
3
wall: fix calloc cal [-Werror=calloc-transposed-args]
Karel Zak <kzak@redhat.com>
CVE-2024-28085
4
wall: use fputs_careful()
наб <nabijaczleweli@nabijaczleweli.xyz>
CVE-2024-28085
5
Define TESTS variable
Tudor Florea <tudor.florea@enea.com>
6
util-linux: Add ptest
Tudor Florea <tudor.florea@enea.com>
7
wall: fix escape sequence Injection [CVE-2024-28085]
Karel Zak <kzak@redhat.com>
CVE-2024-28085
8
Patch #8
Tudor Florea <tudor.florea@enea.com>
9
tests: (functions.sh) create variable for test fstab
=?UTF-8?q?Thomas=20Wei=C3=9Fschuh?= <thomas@t-8ch.de>
10
Patch #10
Phil Blundell <pb@pbcl.net>
11
write: correctly handle wide characters
наб <nabijaczleweli@nabijaczleweli.xyz>
CVE-2024-28085
12
check for sys/pidfd.h
Khem Raj <raj.khem@gmail.com>
13
Update bufflen
Mohamed Maatallah <hotelsmaatallahrecemail@gmail.com>
CVE-2025-14104

Vulnerabilities#


Name
Analysis
Description
Exploitable
util-linux is a random collection of Linux utilities. Prior to version 2.41.4, a TOCTOU (Time-of-Check-Time-of-Use) vulnerability has been identified in the SUID binary /usr/bin/mount from util-linux. The mount binary, when setting up loop devices, validates the source file path with user privileges via fork() + setuid() + realpath(), but subsequently re-canonicalizes and opens it with root privileges (euid=0) without verifying that the path has not been replaced between both operations. Neither O_NOFOLLOW, nor inode comparison, nor post-open fstat() are employed. This allows a local unprivileged user to replace the source file with a symlink pointing to any root-owned file or device during the race window, causing the SUID binary to open and mount it as root. Exploitation requires an /etc/fstab entry with user,loop options whose path points to a directory where the attacker has write permission, and that /usr/bin/mount has the SUID bit set (the default configuration on virtually all Linux distributions). The impact is unauthorized read access to root-protected files and block devices, including backup images, disk volumes, and any file containing a valid filesystem. This issue has been patched in version 2.41.4.
Patched
A flaw was found in util-linux. This vulnerability allows a heap buffer overread when processing 256-byte usernames, specifically within the `setpwnam()` function, affecting SUID (Set User ID) login-utils utilities writing to the password database.
Patched
wall in util-linux through 2.40, often installed with setgid tty permissions, allows escape sequences to be sent to other users' terminals through argv. (Specifically, escape sequences received from stdin are blocked, but escape sequences received from argv are not blocked.) There may be plausible scenarios where this leads to account takeover.