CVE-2011-1585

Published
View on NVD ↗
CVSS v3
N/A
CVSS v2
3.3
LOW
Affected
1
PROJECT

Description

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

Linux kernel source tree
GitHubGitHub
237K