Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-2724

Опубликовано: 29 июл. 2011
Источник: redhat
CVSS2: 2.6
EPSS Низкий

Описание

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 4sambaAffected
Red Hat Enterprise Linux 5sambaAffected
Red Hat Enterprise Linux 5samba3xFixedRHSA-2011:122029.08.2011
Red Hat Enterprise Linux 6cifs-utilsFixedRHSA-2011:122129.08.2011
Red Hat Enterprise Linux 6sambaFixedRHSA-2011:122129.08.2011

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=726691cifs-utils: mount.cifs incorrect fix for CVE-2010-0547

EPSS

Процентиль: 75%
0.00931
Низкий

2.6 Low

CVSS2

Связанные уязвимости

ubuntu
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

nvd
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

debian
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs ...

github
около 3 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

oracle-oval
почти 14 лет назад

ELSA-2011-1220: samba3x security update (MODERATE)

EPSS

Процентиль: 75%
0.00931
Низкий

2.6 Low

CVSS2