Computer Security
[EN] securityvulns.ru no-pyccku


Samba security vulnerabilities
Published:16.10.2011
Source:
SecurityVulns ID:11975
Type:local
Threat Level:
5/10
Description:Different mtab file related vulnerabilities lead to DoS.
Affected:SAMBA : Samba 3.5
CVE:CVE-2011-3585
 CVE-2011-2724 (The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.)
 CVE-2011-1678 (smbfs in Samba 3.5.8 and earlier attempts to use (1) mount.cifs to append to the /etc/mtab file and (2) umount.cifs to append to the /etc/mtab.tmp file without first checking whether resource limits would interfere, which allows local users to trigger corruption of the /etc/mtab file via a process with a small RLIMIT_FSIZE value, a related issue to CVE-2011-1089.)
Original documentdocumentUBUNTU, [USN-1226-1] Samba vulnerabilities (16.10.2011)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod