smb4k: credential cache leak
| Package(s): | smb4k | CVE #(s): | CVE-2014-2581 | ||||||||||||
| Created: | June 3, 2014 | Updated: | June 23, 2014 | ||||||||||||
| Description: | From the Smb4K 1.1.1 release notes:
Fixed potential security issue reported by Heiner Markert. Do not allow the cruid option to be entered via the "Additional options" line edit. Also, implement a check in Smb4KMountJob::createMountAction() that removes the cruid option from the custom options returned by Smb4KSettings::customCIFSOptions(). | ||||||||||||||
| Alerts: |
| ||||||||||||||
