cifs-utils Vulnerabilities and Affected Products
Vulnerabilities associated with cifs-utils.
Products
Clear product- cifs-utils1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-2312MEDIUM | cifs.upcall makes an upcall to the wrong namespace in containerized environmentsA flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache. CWE-488Mar 25, 2025 | CVSS5.9v3.1 | EPSS0.202% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |