Secunia Logo
 
CVE Reference: CVE-2006-1863
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2006-1863

Description:
Directory traversal vulnerability in CIFS in Linux 2.6.16 and earlier allows local users to escape chroot restrictions for an SMB-mounted filesystem via "..\\" sequences, a similar vulnerability to CVE-2006-1864.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/26141

TRUSTIX
  http://www.trustix.org/errata/2006/0024

SUSE
  http://www.novell.com/linux/security/advisories/2006-05-31.html

SAID
  Secunia Advisory: SA19868
  Secunia Advisory: SA20914
  Secunia Advisory: SA21614
  Secunia Advisory: SA20398

OSVDB
  25068

MANDRIVA
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:151
  http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:150

DEBIAN
  http://www.debian.org/security/2006/dsa-1103

CONFIRM
  http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.16.11
  http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=296034f7de8bdf111984ce1630ac598a9c94a253

BID
  17742


Return to the previous page.