CVE-2014-2581: High severity smb4k vulnerability
Published Jan 28, 2020
·Updated
Smb4K before 1.1.1 allows remote attackers to obtain credentials via vectors related to the cuid option in the "Additional options" line edit.
Affected Software
3 affected components
Smb4k Project Smb4k<1.1.1
Fedoraproject Fedora=19
Fedoraproject Fedora=20
Remediation
Patch Available
Event History
Jan 28, 2020
CVE Published
via MITRE·02:15 PM
Data Sourced
via MITRE·02:15 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-2581?
CVE-2014-2581 has a medium severity rating as it allows remote attackers to obtain credentials.
2
How do I fix CVE-2014-2581?
To fix CVE-2014-2581, upgrade Smb4K to version 1.1.1 or later.
3
What software is affected by CVE-2014-2581?
CVE-2014-2581 affects Smb4K versions prior to 1.1.1 and specific versions of Fedora, namely 19 and 20.
4
What type of vulnerability is CVE-2014-2581?
CVE-2014-2581 is a credential disclosure vulnerability that can be exploited by remote attackers.
5
Can CVE-2014-2581 be exploited without authentication?
Yes, CVE-2014-2581 can be exploited by attackers without the need for authentication.