|
|
Log in / Subscribe / Register

smb4k: credential cache leak

Package(s):smb4k CVE #(s):CVE-2014-2581
Created:June 3, 2014 Updated:June 23, 2014
Description: From the Smb4K 1.1.1 release notes:

Fixed potential security issue reported by Heiner Markert. Do not allow the cruid option to be entered via the "Additional options" line edit. Also, implement a check in Smb4KMountJob::createMountAction() that removes the cruid option from the custom options returned by Smb4KSettings::customCIFSOptions().

Alerts:
Mageia MGASA-2014-0271 smb4k 2014-06-20
Fedora FEDORA-2014-6255 smb4k 2014-06-02
Fedora FEDORA-2014-6258 smb4k 2014-06-02

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds