Related Vulnerabilities: CVE-2022-27239  

In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.

Description

The MITRE CVE dictionary describes this issue as:

In cifs-utils through 6.14, a stack-based buffer overflow when parsing the mount.cifs ip= command-line argument could lead to local attackers gaining root privileges.

Additional Information

  • Bugzilla 2081040: CVE-2022-27239 cifs-utils: a stack-based buffer overflow may lead to local attackers gaining root privileges
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2022-27239