During an audit of the smb file system implementation within Linux, several
vulnerabilities were discovered ranging from out of bounds read accesses to
kernel level buffer overflows. See these advisories: Linux kernel
binfmt_elf loader vulnerabilities and
Memory leak in 2.4.27 kernel for more information.
Posted Dec 16, 2004 13:53 UTC (Thu) by stevef (subscriber, #7712)
[Link]
At least for 2.6, smbfs is obsolete for all but two cases (kerberos negotiation and OS/2 servers), replaced by cifs filesystem. If I could track down the patch I can code/review the smbfs patch for 2.6