Summary
Ubuntu Update for Linux kernel vulnerabilities USN-1226-2
Solution
Please Install the Updated Packages.
Insight
Dan Rosenberg discovered that cifs-utils incorrectly handled changes to the mtab file. A local attacker could use this issue to corrupt the mtab file, possibly leading to a denial of service. (CVE-2011-1678)
Jan Lieskovsky discovered that cifs-utils incorrectly filtered certain strings being added to the mtab file. A local attacker could use this issue to corrupt the mtab file, possibly leading to a denial of service.
(CVE-2011-2724)
Affected
cifs-utils on Ubuntu 11.04 ,
Ubuntu 10.10
Severity
Classification
-
CVE CVE-2011-1678, CVE-2011-2724 -
CVSS Base Score: 3.3
AV:L/AC:M/Au:N/C:P/I:P/A:N
Related Vulnerabilities