Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Darren Lavender

#31080de 53,635
8.3CVSS total
Vulnerabilidades · 1
PT-2012-1679
8.3
2011-10-20
Linux · Linux Kernel · CVE-2011-3191
**Name of the Vulnerable Software and Affected Versions** Linux kernel versions prior to 3.1 **Description** The issue is related to an integer signedness error in the CIFSFindNext function, which can be exploited by remote CIFS servers. This error occurs when a large length value is included in a response to a read request for a directory, potentially causing a denial of service due to memory corruption. There may be other unspecified impacts as well. **Recommendations** For Linux kernel versions prior to 3.1, update to version 3.1 or later to resolve the issue.