1.2
CVSSv2

CVE-2011-2724

Published: 06/09/2011 Updated: 07/11/2023
CVSS v2 Base Score: 1.2 | Impact Score: 2.9 | Exploitability Score: 1.9
VMScore: 107
Vector: AV:L/AC:H/Au:N/C:N/I:N/A:P

Vulnerability Summary

The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and previous versions does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.

Vulnerable Product Search on Vulmon Subscribe to Product

samba samba 3.0.19

samba samba 3.0.23

samba samba 3.0.14a

samba samba 2.2.1a

samba samba 3.0.27

samba samba 3.0.31

samba samba 3.0.3

samba samba 2.0.10

samba samba 2.2.12

samba samba 3.0.8

samba samba 3.2.15

samba samba 3.3.3

samba samba 2.2.3

samba samba 3.5.1

samba samba 3.0.29

samba samba 3.0.25

samba samba 2.0.1

samba samba 3.0.25b

samba samba 3.2.5

samba samba 3.4.2

samba samba 2.2.3a

samba samba 3.5.9

samba samba 3.2.3

samba samba 1.9.18

samba samba 2.0.2

samba samba 3.5.7

samba samba 3.3.15

samba samba 3.4.11

samba samba 3.0.2a

samba samba 3.0.36

samba samba 3.4.0

samba samba 3.0.28

samba samba 3.2.4

samba samba 3.4.7

samba samba 3.0.5

samba samba 1.9.17

samba samba 3.0.26

samba samba 3.3.9

samba samba 3.4.8

samba samba 2.2.8a

samba samba 2.2

samba samba 3.0.21

samba samba 3.4.5

samba samba 3.0.32

samba samba 3.0.26a

samba samba 3.2.13

samba samba 3.0.6

samba samba 3.4.6

samba samba 2.18.3

samba samba 3.0.21a

samba samba 3.0.34

samba samba 3.2.1

samba samba 3.0.4

samba samba 3.5.6

samba samba 2.2.0

samba samba 3.3.4

samba samba 3.0.33

samba samba 3.0.20a

samba samba 3.3.12

samba samba 2.2.9

samba samba 3.0.21b

samba samba 2.0.6

samba samba 3.0.20

samba samba 3.3.7

samba samba 3.4.1

samba samba 3.0.0

samba samba 2.2.11

samba samba 3.5.8

samba samba 3.0.9

samba samba 2.2.8

samba samba 3.2.9

samba samba 3.5.2

samba samba 3.0.11

samba samba 2.0.4

samba samba 3.0.7

samba samba 2.2.1

samba samba 3.0.13

samba samba 3.3.1

samba samba 3.2.2

samba samba 3.2.7

samba samba 3.0.14

samba samba 3.0.20b

samba samba 2.2.7a

samba samba 3.0.16

samba samba 2.0

samba samba 3.4.12

samba samba 3.2.10

samba samba 3.0.17

samba samba 2.2.4

samba samba 2.0.9

samba samba 3.4.13

samba samba 3.0.30

samba samba 2.0.3

samba samba 3.0.21c

samba samba 3.3.11

samba samba 3.3.0

samba samba 2.2a

samba samba 3.4.10

samba samba 3.0.23b

samba samba 3.3.6

samba samba 3.5.5

samba samba 3.3.14

samba samba 3.5.0

samba samba 2.2.6

samba samba 3.0.2

samba samba 3.0.12

samba samba 3.2.12

samba samba 3.0.37

samba samba 2.2.0a

samba samba 3.2.8

samba samba 3.0.35

samba samba 3.0.18

samba samba 2.0.7

samba samba 2.0.8

samba samba 2.0.5

samba samba 3.0.25a

samba samba 3.0.25c

samba samba 3.3.2

samba samba 3.0.24

samba samba 3.5.4

samba samba 3.0.10

samba samba 3.2.11

samba samba 2.0.5a

samba samba 3.4.4

samba samba 2.2.2

samba samba 3.1.0

samba samba 2.2.10

samba samba 3.4.3

samba samba 3.3.8

samba samba 3.3.13

samba samba 3.2.14

samba samba 3.0.23d

samba samba 3.4.14

samba samba 3.4.9

samba samba 2.0.0

samba samba 3.2.0

samba samba 2.2.5

samba samba 3.3.5

samba samba 3.0.23c

samba samba 3.0.15

samba samba 3.2.6

samba samba 2.2.7

samba samba 3.0.23a

samba samba 3.3.10

samba samba 3.0.1

samba samba 3.3.16

samba samba

samba samba 3.0.22

samba samba 3.5.3

Vendor Advisories

An attacker could trick cifs-utils into corrupting the system mtab file ...
An attacker could trick Samba into corrupting the system mtab file ...