ELSA-2012-0902

ELSA-2012-0902 - cifs-utils security, bug fix, and enhancement update

Type:SECURITY
Severity:LOW
Release Date:2012-06-27

Description


[4.8.1-10]
- mount.cifs: don't allow unprivileged users to mount onto dirs they can't chdir into (bz 812782)

[4.8.1-9]
- cifs.upcall: use krb5_sname_to_principal to construct principal name (bz 805490)

[4.8.1-8]
- mount.cifs: add backupuid=/backupgid= mount options (bz 806337)

[4.8.1-7]
- RFE: Improve selection of SPNs with cifs.upcall (bz 748757)
- mount.cifs does not use KRB5_CONFIG (bz 748756)
[creates additional entries in /etc/mtab (bz 770004)]
- mount.cifs does not honor the uid/gid=username option, only the uid/gid=# option (bz 796463)

[4.8.1-6]
- undocumented mount.cifs options (bz 769923)


Related CVEs


CVE-2012-1586

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 6 (i386) cifs-utils-4.8.1-10.el6.src.rpm95316dfa8a7e33e1203e359e6adda227ELBA-2015-1366
cifs-utils-4.8.1-10.el6.i686.rpmf163e0670dd49da49d00a228b1ae3030ELBA-2015-1366
Oracle Linux 6 (x86_64) cifs-utils-4.8.1-10.el6.src.rpm95316dfa8a7e33e1203e359e6adda227ELBA-2015-1366
cifs-utils-4.8.1-10.el6.x86_64.rpm43c92d4cb8d7cca138fd7be6a5b48dd8ELBA-2015-1366



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete