VDB
BDU%3A2025-10951
BDU%3A2025-10951
PUBLISHED
CVSS 4 MEDIUM
Уязвимость функции cifs.upcall пакета утилит для монтирования сетевых файловых систем CIFS cifs-utils, позволяющая нарушителю раскрыть защищаемую информацию
Risk Scores
CVSS 2.0
4
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «Ред Софт», ООО «РусБИТех-Астра», Novell Inc., Samba Team, АО «СберТех» | РЕД ОС (запись в едином реестре российских программ №3751), Astra Linux Special Edition (запись в едином реестре российских программ №369), SUSE Linux Enterprise Micro, Suse Linux Enterprise Desktop, Suse Linux Enterprise Server, SUSE Linux Enterprise Server for SAP Applications, SUSE Linux Enterprise High Performance Computing, SUSE Linux Enterprise Module for Basesystem, OpenSUSE Leap, cifs-utils, Platform V SberLinux OS Server (запись в едином реестре российских программ №18785) |
Timeline
- Sep 11, 2025 CVE Published
- Dec 19, 2025 CVE Updated
References
- https://wiki.astralinux.ru/astra-linux-se17-bulletin-2025-0923SE17 url
- https://wiki.astralinux.ru/astra-linux-se47-bulletin-2025-1020SE47 advisory
- https://git.samba.org/?p=cifs-utils.git;a=commit;h=89b679228cc1be9739d54203d28289b03352c174 advisory
- https://web.git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/fs/smb?id=db363b0a1d9e6b9dc556296f1b1007aeb496a8cf advisory
- https://www.suse.com/security/cve/CVE-2025-2312.html advisory
- http://repo.red-soft.ru/redos/7.3c/x86_64/updates/ advisory