CVE-2012-1586

mount.cifs in cifs-utils 2.6 allows local users to determine the existence of arbitrary files or directories via the file path in the second argument, which reveals their existence in an error message.
Configurations

Configuration 1 (hide)

cpe:2.3:a:debian:cifs-utils:2.6:*:*:*:*:*:*:*

History

21 Nov 2024, 01:37

Type Values Removed Values Added
References () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=665923 - () http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=665923 -
References () http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00024.html - () http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00024.html -
References () http://www.openwall.com/lists/oss-security/2012/03/27/1 - () http://www.openwall.com/lists/oss-security/2012/03/27/1 -
References () http://www.openwall.com/lists/oss-security/2012/03/27/6 - () http://www.openwall.com/lists/oss-security/2012/03/27/6 -
References () https://bugzilla.samba.org/show_bug.cgi?id=8821 - () https://bugzilla.samba.org/show_bug.cgi?id=8821 -

Information

Published : 2012-08-27 23:55

Updated : 2024-11-21 01:37


NVD link : CVE-2012-1586

Mitre link : CVE-2012-1586

CVE.ORG link : CVE-2012-1586


JSON object : View

Products Affected

debian

  • cifs-utils
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor