Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 32: FEDORA-2020-cfdd73f1b4 moderate vulnerability in cifs-utils

fedora
Calendar Grey November 10, 2020
Dist Fedora Esm H88
Addresses vulnerabilities related to shell command injection in cifs-utils while bringing in additional utilities tailored for Fedora 32 users.
New upstream release: - fixes CVE-2020-14342 cifs-utils: shell command injection in mount.cifs - adds `smb2-quota` tool - adds `mount.smb3` as a symlink to `mount.cifs`

Summary

The SMB/CIFS protocol is a standard file sharing protocol widely deployed

on Microsoft Windows machines. This package contains tools for mounting

shares on Linux using the SMB/CIFS protocol. The tools in this package

work in conjunction with support in the kernel to allow one to mount a

SMB/CIFS share onto a client and use it as if it were a standard Linux

file system.

New upstream release: - fixes CVE-2020-14342 cifs-utils: shell command

injection in mount.cifs - adds `smb2-quota` tool - adds `mount.smb3` as a

symlink to `mount.cifs`

* Mon Nov 2 2020 Alexander Bokovoy - 6.11-1

- Update to v6.11 release

- Resolves: rhbz#1876400 - CVE-2020-14342 - cifs-utils: shell command injection

[ 1 ] Bug #1784578 - cifs-utils-6.11 is available

https://bugzilla.redhat.com/show_bug.cgi?id=1784578

[ 2 ] Bug #1876400 - CVE-2020-14342 cifs-utils: shell command injection in mount.cifs [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=1876400

su -c 'dnf upgrade --advisory FEDORA-2020-cfdd73f1b4' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Change Log

References

Update Instructions

Product: Fedora 32
Version: 6.11
Release: 1.fc32
URL:
Summary: Utilities for mounting and managing CIFS mounts

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here