An unprivileged user can mount an ecryptfs over /proc/$pid because
according to stat(), it is a normal directory and owned by the user.
However, the user is not actually permitted to create arbitrary
directory entries in /proc/$pid, and ecryptfs’ behavior might be
enabling privilege escalation attacks with the help of other programs
that use procfs.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
any | any | any | ecryptfs-utils | < 108-2 | UNKNOWN |