PT-2011-1075 · Linux+2 · Linux Kernel+3

Eugene Teo

·

Published

2011-03-01

·

Updated

2023-02-13

·

CVE-2011-1585

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Linux kernel versions prior to 2.6.36
Description The issue is related to the cifs find smb ses function in fs/cifs/connect.c, which does not properly determine the associations between users and sessions. This allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user. There is also mention of multiple vulnerabilities in the kernel-kdumppae package of SUSE Linux Enterprise, which can be exploited remotely to disrupt the availability of protected information.
Recommendations For Linux kernel versions prior to 2.6.36, update to version 2.6.36 or later to resolve the issue. As a temporary workaround, consider restricting access to shared mounts to minimize the risk of exploitation. Avoid using shared mounts of CIFS shares by different users until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for the kernel-kdumppae package vulnerabilities in SUSE Linux Enterprise.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-04607
CVE-2011-1585
DSA-2240-1
RHSA-2011:1253
RHSA-2011:1386
RHSA-2011_1386

Affected Products

Linux Kernel
Red Hat
Suse Linux Enterprise
Suse