[CLSA-2026:1784560784] cifs-utils: Fix of CVE-2026-12505
Type:
security
Severity:
Important
Release date:
2026-07-20 15:20:09 UTC
Description:
- CVE-2026-12505: fix local privilege escalation in cifs.upcall via getpwuid NSS lookup in the caller's namespace
CVEs fixed:
Updated packages:
  • cifs-utils-7.2-0.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:84e5660237010f16f69d522bb4955919d562d67c818bdae9ad112ac3433f37b8
  • cifs-utils-devel-7.2-0.el9_6.2.tuxcare.els1.i686.rpm
    sha:efe823855d85cc70beeaf84688d9622be49d2df947f9821671337aafdb6a64da
  • cifs-utils-devel-7.2-0.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:ef00f16a39bc5a3d4d9e0e23dfe1a081e629f56a5128b323d86868f0ec84079a
  • cifs-utils-info-7.2-0.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:e02864df085a8084fa8b8ae0ed06cb0c31bc68638d8516b519e7ae99881b607c
  • pam_cifscreds-7.2-0.el9_6.2.tuxcare.els1.x86_64.rpm
    sha:01eb7017b0b65401103070afb151613f7524f2074ff0a871ac47838c2c185942
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.