Information on source package cifs-utils

Available versions

ReleaseVersion
jessie2:6.4-1+deb8u1
stretch2:6.7-1+deb9u1
buster2:6.8-2+deb10u1
bullseye2:6.11-3.1+deb11u2
bullseye (security)2:6.11-3.1+deb11u1
bookworm2:7.0-2
trixie2:7.0-2.1
sid2:7.0-2.1

Open issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2021-20208vulnerable (no DSA)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedA flaw was found in cifs-utils in versions before 6.13. A user when mo ...
CVE-2020-14342vulnerable (no DSA, postponed)vulnerable (no DSA)vulnerable (no DSA)fixedfixedfixedfixedIt was found that cifs-utils' mount.cifs was invoking a shell when req ...

Open unimportant issues

BugjessiestretchbusterbullseyebookwormtrixiesidDescription
CVE-2014-2830vulnerablevulnerablevulnerablevulnerablevulnerablevulnerablevulnerableStack-based buffer overflow in cifskey.c or cifscreds.c in cifs-utils ...

Resolved issues

BugDescription
CVE-2022-29869cifs-utils through 6.14, with verbose logging, can cause an informatio ...
CVE-2022-27239In cifs-utils through 6.14, a stack-based buffer overflow when parsing ...
CVE-2012-1586mount.cifs in cifs-utils 2.6 allows local users to determine the exist ...
CVE-2011-3585Multiple race conditions in the (1) mount.cifs and (2) umount.cifs pro ...
CVE-2011-2724The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs ...
CVE-2011-1678smbfs in Samba 3.5.8 and earlier attempts to use (1) mount.cifs to app ...

Security announcements

DSA / DLADescription
DSA-5157-1cifs-utils - security update
DLA-3009-1cifs-utils - security update
ELA-614-1cifs-utils - security update

Search for package or bug name: Reporting problems