Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-3843
Description:The Linux kernel before 2.6.23-rc1 checks the wrong global variable for the CIFS sec mount option, which might allow remote attackers to spoof CIFS network traffic that the client configured for security signatures, as demonstrated by lack of signing despite sec=ntlmv2i in a SetupAndX request.
Test IDs: 1.3.6.1.4.1.25623.1.0.58585  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-3843
25244
http://www.securityfocus.com/bid/25244
26366
http://secunia.com/advisories/26366
26647
http://secunia.com/advisories/26647
26760
http://secunia.com/advisories/26760
27436
http://secunia.com/advisories/27436
27747
http://secunia.com/advisories/27747
27912
http://secunia.com/advisories/27912
28806
http://secunia.com/advisories/28806
DSA-1363
http://www.debian.org/security/2007/dsa-1363
RHSA-2007:0705
http://www.redhat.com/support/errata/RHSA-2007-0705.html
RHSA-2007:0939
http://www.redhat.com/support/errata/RHSA-2007-0939.html
SUSE-SA:2007:064
http://lists.opensuse.org/opensuse-security-announce/2007-12/msg00001.html
SUSE-SA:2008:006
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00002.html
USN-510-1
http://www.ubuntu.com/usn/usn-510-1
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=246595
http://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=246595
http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.23-rc1
http://kernel.org/pub/linux/kernel/v2.6/testing/ChangeLog-2.6.23-rc1
http://support.avaya.com/elmodocs2/security/ASA-2007-474.htm
http://support.avaya.com/elmodocs2/security/ASA-2007-474.htm
oval:org.mitre.oval:def:9670
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9670




© 1998-2025 E-Soft Inc. All rights reserved.