Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:10833
HistoryJan 15, 2019 - 8:52 a.m.

Information Disclosure

2019-01-1508:52:46
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.001

Percentile

17.9%

The cifs-utils package is vulnerable to information disclosure. The vulnerability exists due to the way it handles the second argument in mount.cifs which allows a local user to disclose the arbitrary file or directory information via an error massage.