CVE-2012-1586

Description

mount.cifs in cifs-utils 2.6 allows local users to determine the existence of arbitrary files or directories via the file path in the second argument, which reveals their existence in an error message.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
EPSS Score
Exploitation Probability
0.514

Associated Vulnerability

VulnerabilityOS Platform
(RHSA-2012:0902) Low: cifs-utils security, bug fix, and enhancement update cifs-utils-4.8.1-10.el6.i686.rpmLinux
(RHSA-2012:0902) Low: cifs-utils security, bug fix, and enhancement update cifs-utils-4.8.1-10.el6.x86_64.rpmLinux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234