Sploitus

CVE-2011-1585

2 known exploits for CVE-2011-1585

The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a share by a different user.

Linux Linux Kernel
< 2.6.36
Fix
Available
CVSS 2.0
3.3 LOW
EPSS
0.5% (40th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2013-06-08
CVE-2011-1585 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2011-1585

Proof-of-concept code and exploit modules indexed by Sploitus