Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2011-1585

Опубликовано: 08 июн. 2013
Источник: nvd
CVSS2: 3.3
EPSS Низкий

Описание

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:*
Версия до 2.6.36 (исключая)
Конфигурация 2
cpe:2.3:o:suse:suse_linux_enterprise_server:10:sp4:*:*:*:*:*:*

EPSS

Процентиль: 16%
0.00051
Низкий

3.3 Low

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
около 12 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

redhat
почти 15 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

debian
около 12 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kerne ...

github
около 3 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

oracle-oval
больше 13 лет назад

ELSA-2011-2037: Unbreakable Enterprise kernel security and bug fix update (MODERATE)

EPSS

Процентиль: 16%
0.00051
Низкий

3.3 Low

CVSS2

Дефекты

CWE-264