Denial of Service Vulnerability in Linux Kernel's CIFS DFS Referral Handling

Denial of Service Vulnerability in Linux Kernel's CIFS DFS Referral Handling

CVE-2011-3363 · MEDIUM Severity

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.