> USN-8496-2: cifs-utils regression
[DATE: 03/07/2026 18:49]
[LANGUAGE: EN]
USN-8496-1 fixed a vulnerability in cifs-utils. Unfortunately, the fix
introduced a regression with Kerberos mounts. This update reverts the
security update until a complete fix is available.
We apologize for the inconvenience.
Original advisory details:
It was discovered that cifs-utils incorrectly dropped root privileges
before looking up user information. A local attacker could possibly use
this issue to execute arbitrary code as the root user.