Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-1585

Опубликовано: 08 июн. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 3.3

Описание

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

РелизСтатусПримечание
devel

not-affected

2.6.39-0.0
hardy

released

2.6.24-30.96
lucid

released

2.6.32-34.73
maverick

released

2.6.35-31.62
natty

not-affected

2.6.37-2.9
oneiric

not-affected

2.6.39-0.0
precise

not-affected

3.1.0-1.1
upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

not-affected

3.2.0-1602.5
hardy

DNE

lucid

DNE

natty

DNE

oneiric

DNE

precise

not-affected

3.2.0-1600.1
upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.32-318.37
maverick

ignored

end of life
natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.31-612.30
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.35-31.62~lucid1
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.38-1.27~lucid1
maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

not-affected

maverick

DNE

natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

DNE

hardy

DNE

lucid

released

2.6.32-218.35
maverick

released

2.6.32-418.35
natty

DNE

oneiric

DNE

precise

DNE

upstream

released

2.6.36~rc3

Показывать по

РелизСтатусПримечание
devel

not-affected

2.6.38-1309.13
hardy

DNE

lucid

DNE

maverick

released

2.6.35-903.27
natty

not-affected

2.6.38-1201.2
oneiric

not-affected

2.6.38-1309.13
precise

not-affected

3.0.0-1401.2
upstream

released

2.6.36~rc3

Показывать по

EPSS

Процентиль: 16%
0.00051
Низкий

3.3 Low

CVSS2

Связанные уязвимости

redhat
почти 15 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

nvd
около 12 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

debian
около 12 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kerne ...

github
около 3 лет назад

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

oracle-oval
больше 13 лет назад

ELSA-2011-2037: Unbreakable Enterprise kernel security and bug fix update (MODERATE)

EPSS

Процентиль: 16%
0.00051
Низкий

3.3 Low

CVSS2

Уязвимость CVE-2011-1585