CVE-2011-3145: ecryptfs-utils: incorrect mtab group ownership

Severity: Critical

CVSS Score: 9.8

When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doesn't also set the effective group id. So when it creates the new version, mtab.tmp, it's created with the group id of the user running mount.ecryptfs_private.