VYPR
High severity7.8NVD Advisory· Published Jan 26, 2016· Updated May 6, 2026

CVE-2016-1233

CVE-2016-1233

Description

An unspecified udev rule in the Debian fuse package in jessie before 2.9.3-15+deb8u2, in stretch before 2.9.5-1, and in sid before 2.9.5-1 sets world-writable permissions for the /dev/cuse character device, which allows local users to gain privileges via a character device in /dev, related to an ioctl.

Affected products

1
  • cpe:2.3:a:debian:fuse:*:*:*:*:*:*:*:*
    Range: <=2.9.3-14

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.