6.8 Medium
CVSS2
Attack Vector
ADJACENT_NETWORK
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:A/AC:H/Au:N/C:C/I:C/A:C
0.037 Low
EPSS
Percentile
91.8%
Multiple buffer overflows in CIFS VFS in Linux kernel 2.6.23 and earlier
allows remote attackers to cause a denial of service (crash) and possibly
execute arbitrary code via long SMB responses that trigger the overflows in
the SendReceive function.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 6.06 | noarch | linux-source-2.6.15 | <Β 2.6.15-52.67 | UNKNOWN |
ubuntu | 7.04 | noarch | linux-source-2.6.20 | <Β 2.6.20-17.36 | UNKNOWN |
ubuntu | 7.10 | noarch | linux-source-2.6.22 | <Β 2.6.22-15.54 | UNKNOWN |