Commit Graph

31 Commits

Author SHA1 Message Date
Pavel Filipenský
3dac43c233 Upstream release 7.0 2023-02-01 08:42:15 +01:00
Alexander Bokovoy
80c65e7eb4 cifs-utils 6.15
Fixes: rhbz#2080525

- CVE-2022-27239: mount.cifs: fix length check for ip option parsing
- CVE-2022-29869: mount.cifs: fix verbose messages on option parsing

Description

CVE-2022-27239:

In cifs-utils through 6.14, a stack-based buffer overflow when parsing
the mount.cifs ip= command-line argument could lead to local attackers
gaining root privileges.

CVE-2022-29869:

cifs-utils through 6.14, with verbose logging, can cause an
information leak when a file contains = (equal sign) characters but is
not a valid credentials file.

Both issues were originally reported and fixed by Jeffrey Bencteux.

Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2022-04-30 20:43:32 +03:00
Alexander Bokovoy
e8ad45d2cf cifs-utils 6.14
Signed-off-by: Alexander Bokovoy <abokovoy@redhat.com>
2022-02-02 09:08:01 +02:00
Bruno Wolff III
f8439f9a52 Move to 6.13 2021-09-22 20:06:30 -05:00
Alexander Bokovoy
b87f12c2b6 CVE2020-14342 cifs-utils: shell command injection in mount.cifs
- update to v6.11
 - fix spec file incompatibilities
 - include smb2-quota and mount.smb3
 - update Python to Python 3

Resolves: rhbz#1876400
2020-11-02 10:32:10 +02:00
Jeff Layton
ff154e48d9 Update to v6.9 release
...and add the smbinfo utility.

Signed-off-by: Jeff Layton <jlayton@kernel.org>
2019-04-21 20:25:34 -04:00
Jeff Layton
e47b6ae3eb Update to cifs-utils-6.8
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2018-04-10 12:09:17 -04:00
Jeff Layton
bab69ea45e Update to cifs-utils-6.7 2017-03-02 14:04:21 -05:00
Jeff Layton
6d0099e9f1 Updated to 6.6 release
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2016-09-07 07:38:14 -04:00
Sachin Prabhu
21488a46d7 Updated to 6.5 release
Also fix the Source0 URL in the spec file.

Signed-off-by: Sachin Prabhu <sprabhu@redhat.com>
2016-03-10 06:25:04 +05:30
Sachin Prabhu
9f0c3b0ee7 Updated to 6.4 release
Signed-off-by: Sachin Prabhu <sprabhu@redhat.com>
2014-08-04 12:11:16 +01:00
Jeff Layton
217f0bb091 Update to 6.3 release
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2014-01-09 11:40:03 -05:00
Jeff Layton
205e1dfd3d Update to 6.2 release
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2013-10-04 08:13:44 -04:00
Jeff Layton
d3b2ad6203 Update to 6.1 release 2013-07-02 16:02:36 -04:00
Jeff Layton
f92468acdc Update to 6.0 upstream release 2013-03-25 11:13:07 -04:00
Jeff Layton
590cd6cd96 update to 5.9 release
Also:

- add a -devel package to hold cifsidmap.h
- move mount.cifs to /usr/sbin

Signed-off-by: Jeff Layton <jlayton@redhat.com>
2013-01-07 08:27:02 -05:00
Jeff Layton
54e9368312 Update to 5.8 release 2012-11-11 06:42:01 -05:00
Jeff Layton
47f345086c Update to 5.7 release. 2012-10-09 21:05:45 -04:00
Jeff Layton
d706d95ef7 Update to 5.6 release
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2012-07-26 11:01:10 -04:00
Jeff Layton
bfd8da6470 Update to 5.5 release
Signed-off-by: Jeff Layton <jlayton@redhat.com>
2012-05-30 06:44:58 -04:00
Jeff Layton
8d02d8c5df Update to 5.4 release. 2012-04-18 17:55:50 -04:00
Jeff Layton
9e09d11943 Update to 5.3 release 2012-01-28 09:03:37 -05:00
Jeff Layton
a1d2550223 Update to 5.2 release 2011-12-09 20:58:31 -05:00
Jeff Layton
758b698cd0 Update to 5.1 release 2011-09-23 14:06:46 -04:00
Jeff Layton
158ad7785a Update to 5.0 release 2011-06-01 16:27:37 -04:00
Jeff Layton
858614420e Update to 4.9 release 2011-03-04 15:36:29 -05:00
Jeff Layton
91bbc425ca Update to 4.8.1 2011-01-21 14:19:37 -05:00
Jeff Layton
b6a237fcce Update to 4.8 release 2011-01-15 21:16:51 -05:00
Jeff Layton
c95937d833 Update to 4.7 release 2010-10-19 15:40:44 -04:00
Jeff Layton
e378fd528a Update to 4.6 release 2010-07-30 09:23:51 -04:00
Fedora Release Engineering
5b80c71e61 dist-git conversion 2010-07-28 11:43:35 +00:00