The check_mtab function in client/mount.cifs.c in mount.cifs in smbfs in Samba 3.5.10 and earlier does not properly verify that the (1) device name and (2) mountpoint strings are composed of valid characters, which allows local users to cause a denial of service (mtab corruption) via a crafted string. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-0547.
CVSS Details
- CVSS 3.1 Base Score: 7.1
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade samba3xUpgrade samba3x-docUpgrade samba3x-clientUpgrade samba3x-domainjoin-guiUpgrade samba3x-commonUpgrade samba3x-winbind-develUpgrade samba3x-swatUpgrade samba3x-winbind | Dec 1, 2016 | Sep 6, 2011 |
| Debian | — | Upgrade sambaUpgrade cifs-utils | Jul 30, 2024 | Sep 6, 2011 |
| Gentoo Linux | — | Upgrade net-fs/samba. | Oct 30, 2017 | Sep 6, 2011 |
| Oracle_linux | — | Upgrade samba3x-winbind-develUpgrade samba3x-commonUpgrade samba-clientUpgrade samba3x-swatUpgrade samba3x-winbindUpgrade samba-domainjoin-guiUpgrade libsmbclientUpgrade samba3x-clientUpgrade samba-winbind-clientsUpgrade samba-winbind-krb5-locatorUpgrade samba-docUpgrade samba3xUpgrade samba-commonUpgrade libsmbclient-develUpgrade samba-winbindUpgrade samba-winbind-develUpgrade samba-swatUpgrade samba3x-docUpgrade samba3x-domainjoin-guiUpgrade cifs-utilsUpgrade samba | Oct 16, 2024 | Sep 6, 2011 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Jul 29, 2011 |
| Samba | — | Upgrade to Samba version 3.5.11 | Apr 30, 2018 | Sep 6, 2011 |
| Ubuntu | — | Upgrade smbfs | Nov 8, 2024 | Sep 6, 2011 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub