Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-66003

Опубликовано: 08 янв. 2026
Источник: debian
EPSS Низкий

Описание

An External Control of File Name or Path vulnerability in smb4k allowsl ocal users to perform a local root exploit via smb4k mounthelper if they can access and control the contents of a Samba shareThis issue affects smb4k: from ? before 4.0.5.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
smb4kfixed4.0.5-1package

Примечания

  • https://www.openwall.com/lists/oss-security/2025/12/10/6

  • Fixed by: https://invent.kde.org/network/smb4k/-/commit/0dea60194ab6eb8f6e34ca2e6cb0f97b90c46f1e

  • Fixed by: https://invent.kde.org/network/smb4k/-/commit/0aeabfa9d0f041479589dd855cbfe7cdebedfdb6 (4.0.5)

  • Bugfix: https://invent.kde.org/network/smb4k/-/commit/ffc6da7beb1879a968a8181372587ff71f247c1b (4.0.5)

  • Bugfix: https://invent.kde.org/network/smb4k/-/commit/55c535cbab6843c88cac033a21e43206b5eefbd0 (4.0.5)

  • bugfix: https://invent.kde.org/network/smb4k/-/commit/35f8cf121bfab276b739d4b8a866f8f3cdc0f7d1 (4.0.5)

EPSS

Процентиль: 3%
0.00016
Низкий

Связанные уязвимости

ubuntu
30 дней назад

An External Control of File Name or Path vulnerability in smb4k allowsl ocal users to perform a local root exploit via smb4k mounthelper if they can access and control the contents of a Samba shareThis issue affects smb4k: from ? before 4.0.5.

nvd
30 дней назад

An External Control of File Name or Path vulnerability in smb4k allowsl ocal users to perform a local root exploit via smb4k mounthelper if they can access and control the contents of a Samba shareThis issue affects smb4k: from ? before 4.0.5.

github
30 дней назад

An External Control of File Name or Path vulnerability in smb4k allowsl ocal users to perform a local root exploit via smb4k mounthelper if they can access and control the contents of a Samba shareThis issue affects smb4k: from ? before 4.0.5.

EPSS

Процентиль: 3%
0.00016
Низкий