<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T06:46:49.091498+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:39575</id>
    <title>ALSA-2026:39575 — Important: cifs-utils security, bug fix, and enhancement update</title>
    <updated>2026-10-04T06:46:49.469334+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: cifs-utils, AlmaLinux:8: cifs-utils-devel, AlmaLinux:8: pam_cifscreds</p>
<p>The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto a client and use it as if it were a standard Linux file system.</p>
<p>Security Fix(es):</p>
<p>* cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall (CVE-2026-12505)</p>
<p>Bug Fix(es) and Enhancement(s):</p>
<p>* add sssd method for mapping SID to UID/GID in man page of mount.cifs [almalinux-8.10.z] (JIRA:AlmaLinux-41059)
  * Update the mount.cifs man page to match the 3*echo_interval reconnection timeout (JIRA:AlmaLinux-80397)
  * cifs-utils: regression with kerberos mount [almalinux-8.10.z] (JIRA:AlmaLinux-192933)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:39575"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2026-avi-0955</id>
    <title>certfr-2026-avi-0955 — De multiples vulnérabilités ont été découvertes dans le noyau Linux de Red Hat. Certaines d'entre elles permettent à un…</title>
    <updated>2026-10-04T06:46:49.469417+00:00</updated>
    <content>certfr-2026-avi-0955</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2026-avi-0955"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-362253</id>
    <title>EUVD-2026-362253</title>
    <updated>2026-10-04T06:46:49.469442+00:00</updated>
    <content>EUVD-2026-362253</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-362253"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-12505</id>
    <title>fkie_cve-2026-12505</title>
    <updated>2026-10-04T06:46:49.469456+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges before looking up user information inside a user-controlled environment. A local, low privileged attacker can exploit this by using a crafted request_key payload to trick the root-owned helper into entering a custom environment (namespace) containing a malicious NSS module. This forces the system to load the attacker's controlled NSS Module and configuration, allowing them to execute arbitrary commands as the root user, elevating their privileges and fully compromising the system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-12505"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-58j9-p7xf-pjx7</id>
    <title>GHSA-58j9-p7xf-pjx7</title>
    <updated>2026-10-04T06:46:49.469483+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges before looking up user information inside a user-controlled environment. A local, low privileged attacker can exploit this by using a crafted request_key payload to trick the root-owned helper into entering a custom environment (namespace) containing a malicious NSS module. This forces the system to load the attacker's controlled NSS Module and configuration, allowing them to execute arbitrary commands as the root user, elevating their privileges and fully compromising the system.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-58j9-p7xf-pjx7"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2026-12505</id>
    <title>msrc_CVE-2026-12505 — Cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall</title>
    <updated>2026-10-04T06:46:49.469502+00:00</updated>
    <content>msrc_CVE-2026-12505</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2026-12505"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-3028</id>
    <title>OESA-2026-3028 — cifs-utils security update</title>
    <updated>2026-10-04T06:46:49.469518+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP4: cifs-utils</p>
<p>The in-kernel CIFS filesystem is generally the preferred method for mounting SMB/CIFS shares on Linux.

Security Fix(es):</p>
<p>A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges before looking up user information inside a user-controlled environment. A local, low privileged attacker can exploit this by using a crafted request_key payload to trick the root-owned helper into entering a custom environment (namespace) containing a malicious NSS module. This forces the system to load the attacker&amp;apos;s controlled NSS Module and configuration, allowing them to execute arbitrary commands as the root user, elevating their privileges and fully compromising the system.(CVE-2026-12505)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-3028"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:32990</id>
    <title>RHSA-2026:32990 — Red Hat Security Advisory: cifs-utils security update</title>
    <updated>2026-10-04T06:46:49.469544+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:32990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2026:44232</id>
    <title>RHSA-2026:44232 — Red Hat Security Advisory: OpenShift Container Platform 4.22.7 bug fix and security update</title>
    <updated>2026-10-04T06:46:49.469562+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall kernel: ip6_tunnel: clear skb2-&gt;cb[] in ip4ip6_err() podman: Podman: Information disclosure via malicious container image environment variables</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2026:44232"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:32990</id>
    <title>RLSA-2026:32990 — Important: cifs-utils security update</title>
    <updated>2026-10-04T06:46:49.469580+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:10: cifs-utils</p>
<p>The SMB/CIFS protocol is a standard file sharing protocol widely deployed on Microsoft Windows machines. The cifs-utils packages contain tools for mounting shares on Linux using the SMB/CIFS protocol. The tools in this package work in conjunction with support in the kernel to allow one to mount a SMB/CIFS share onto a client and use it as if it were a standard Linux file system.</p>
<p>Security Fix(es):</p>
<p>* cifs-utils: local privilege escalation via forged cifs.spnego key description in cifs.upcall (CVE-2026-12505)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:32990"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:22888-1</id>
    <title>SUSE-SU-2026:22888-1 — Security update for cifs-utils</title>
    <updated>2026-10-04T06:46:49.469604+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for cifs-utils</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:22888-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12505</id>
    <title>UBUNTU-CVE-2026-12505</title>
    <updated>2026-10-04T06:46:49.469619+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:14.04:LTS: cifs-utils, Ubuntu:Pro:16.04:LTS: cifs-utils, Ubuntu:18.04:LTS: cifs-utils, Ubuntu:20.04:LTS: cifs-utils, Ubuntu:22.04:LTS: cifs-utils, Ubuntu:24.04:LTS: cifs-utils, Ubuntu:25.10: cifs-utils, Ubuntu:26.04:LTS: cifs-utils</p>
<p>A flaw was found in the cifs-utils package where the cifs.upcall helper fails to securely drop its root privileges before looking up user information inside a user-controlled environment. A local, low privileged attacker can exploit this by using a crafted request_key payload to trick the root-owned helper into entering a custom environment (namespace) containing a malicious NSS module. This forces the system to load the attacker's controlled NSS Module and configuration, allowing them to execute arbitrary commands as the root user, elevating their privileges and fully compromising the system.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-12505"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2125</id>
    <title>WID-SEC-W-2026-2125 — Red Hat Enterprise Linux (cifs-utils): Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit Administrator…</title>
    <updated>2026-10-04T06:46:49.469651+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein lokaler Angreifer kann eine Schwachstelle in den cifs-utils von Red Hat Enterprise Linux ausnutzen, um beliebigen Programmcode mit Administratorrechten auszuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2125"/>
  </entry>
</feed>
