Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-0620

Опубликовано: 06 июн. 2025
Источник: debian
EPSS Низкий

Описание

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sambafixed2:4.22.2+dfsg-1package
sambanot-affectedbookwormpackage
sambanot-affectedbullseyepackage

Примечания

  • https://www.samba.org/samba/security/CVE-2025-0620.html

  • https://bugzilla.samba.org/show_bug.cgi?id=15707

EPSS

Процентиль: 16%
0.00052
Низкий

Связанные уязвимости

CVSS3: 6.6
ubuntu
7 месяцев назад

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

CVSS3: 6.6
redhat
больше 1 года назад

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

CVSS3: 6.6
nvd
7 месяцев назад

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

suse-cvrf
6 месяцев назад

Security update for samba

CVSS3: 6.6
github
7 месяцев назад

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

EPSS

Процентиль: 16%
0.00052
Низкий