In the Linux kernel, the following vulnerability has been resolved: smb: client: Don't log plaintext credentials in cifs_set_cifscreds When debug logging is enabled, cifs_set_cifscreds() logs the key payload and exposes the plaintext username and password. Remove the debug log to avoid exposing credentials.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 13.0.0 |
| Linux | Linux | n/a |
| Linux | Linux | n/a |
| Linux | Linux | 2018.011.20063 and earlier, 2017.011.30102 and earlier, and 2015.006.30452 and earlier versions |