Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-2724

Опубликовано: 06 сент. 2011
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 1.2

Описание

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

РелизСтатусПримечание
dapper

DNE

devel

released

5.0-1ubuntu2
hardy

DNE

karmic

DNE

lucid

DNE

maverick

released

2:4.5-2ubuntu0.10.10.1
natty

released

2:4.5-2ubuntu0.11.04.1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

moved to cifs-utils
hardy

not-affected

3.0.28a-1ubuntu4.15
karmic

ignored

end of life
lucid

released

2:3.4.7~dfsg-1ubuntu3.8
maverick

not-affected

moved to cifs-utils
natty

not-affected

moved to cifs-utils
upstream

needs-triage

Показывать по

EPSS

Процентиль: 75%
0.00931
Низкий

1.2 Low

CVSS2

Связанные уязвимости

redhat
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

nvd
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

debian
почти 14 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs ...

github
около 3 лет назад

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

oracle-oval
почти 14 лет назад

ELSA-2011-1220: samba3x security update (MODERATE)

EPSS

Процентиль: 75%
0.00931
Низкий

1.2 Low

CVSS2