The in-kernel CIFS filesystem is generally the preferred method for mounting SMB/CIFS shares on Linux.
Security Fix(es):
A flaw was found in cifs-utils. When trying to obtain Kerberos credentials, the cifs.upcall program from the cifs-utils package makes an upcall to the wrong namespace in containerized environments. This issue may lead to disclosing sensitive data from the host's Kerberos credentials cache.(CVE-2025-2312)
{
"severity": "Medium"
}{
"aarch64": [
"cifs-utils-7.0-7.oe2403sp3.aarch64.rpm",
"cifs-utils-debuginfo-7.0-7.oe2403sp3.aarch64.rpm",
"cifs-utils-debugsource-7.0-7.oe2403sp3.aarch64.rpm",
"cifs-utils-devel-7.0-7.oe2403sp3.aarch64.rpm",
"cifs-utils-help-7.0-7.oe2403sp3.aarch64.rpm"
],
"src": [
"cifs-utils-7.0-7.oe2403sp3.src.rpm"
],
"x86_64": [
"cifs-utils-7.0-7.oe2403sp3.x86_64.rpm",
"cifs-utils-debuginfo-7.0-7.oe2403sp3.x86_64.rpm",
"cifs-utils-debugsource-7.0-7.oe2403sp3.x86_64.rpm",
"cifs-utils-devel-7.0-7.oe2403sp3.x86_64.rpm",
"cifs-utils-help-7.0-7.oe2403sp3.x86_64.rpm"
]
}