CVE-2007-3843

CVSS v2.0 4.3 (Medium)
43% Progress
EPSS 2.02 % (89th)
2.02% Progress
Affected Products 1
Advisories 2

The Linux kernel before 2.6.23-rc1 checks the wrong global variable for the CIFS sec mount option, which might allow remote attackers to spoof CIFS network traffic that the client configured for security signatures, as demonstrated by lack of signing despite sec=ntlmv2i in a SetupAndX request.

Weaknesses
CWE-NVD-Other
CVE Status
PUBLISHED
CNA
Red Hat, Inc.
Published Date
2007-08-09 21:17:00
(17 years ago)
Updated Date
2017-09-29 01:29:07
(7 years ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Linux Kernel Rc6 2.6.22 and prior versions cpe:2.3:o:linux:linux_kernel::rc6 <= 2.6.22
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...