logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2018-7738

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2018-7738

Description:
In util-linux before 2.32-rc1, bash-completion/umount allows local users to gain privileges by embedding shell commands in a mountpoint name, which is mishandled during a umount command (within Bash) by a different user, as demonstrated by logging in as root and entering umount followed by a tab character for autocompletion.
Last updated date:
12/13/2024
Type:
exploit
Confidence:
HIGH
Date of publishing:
06/26/2020
Reference url to background

https://blog.grimm-co.com/post/malicious-command-execution-via-bash-completion-cve-2018-7738/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2026

Privacy Policy