Summary
Ubuntu Update for Linux kernel vulnerabilities USN-893-1
Solution
Please Install the Updated Packages.
Insight
Ronald Volgers discovered that the mount.cifs utility, when installed as a setuid program, suffered from a race condition when verifying user permissions. A local attacker could trick samba into mounting over arbitrary locations, leading to a root privilege escalation.
Affected
samba vulnerability on Ubuntu 6.06 LTS ,
Ubuntu 8.04 LTS ,
Ubuntu 8.10 ,
Ubuntu 9.04 ,
Ubuntu 9.10
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2009-3297 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:P/I:N/A:N
Related Vulnerabilities