Release date:
Updated on:
Affected Systems:
Samba 3.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 49939
Cve id: CVE-2011-1678
Samba is a set of programs that implement the SMB (Server Messages Block) protocol, cross-platform file sharing and print sharing services.
In Samba 3.5.8 and earlier versions, smbfs tries to use mount. cifs is appended to the/etc/mtab file, umount. cifs is appended to/etc/mtab. tmp file, without checking resource restrictions, can cause local users to destroy the/etc/mtab file through the process related to the small RLIMIT_FSIZE value.
<* Source: Dan Rosenberg (drosenberg@vsecurity.com)
Link: https://bugzilla.redhat.com/show_bug.cgi? CVE-2011-1678
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Samba
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.samba.org/