Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-2619

Опубликовано: 23 мар. 2017
Источник: redhat
CVSS3: 5.9
EPSS Средний

Описание

Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.

A race condition was found in samba server. A malicious samba client could use this flaw to access files and directories in areas of the server file system not exported under the share definitions.

Меры по смягчению последствий

Add the parameter: unix extensions = no to the [global] section of your smb.conf and restart smbd. This prevents SMB1 clients from creating symlinks on the exported file system using SMB1. However, if the same region of the file system is also exported using NFS, NFS clients can create symlinks that potentially can also hit the race condition. For non-patched versions of Samba we recommend only exporting areas of the file system by either SMB or NFS, not both.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5sambaWill not fix
Red Hat Enterprise Linux 5samba3xWill not fix
Red Hat Enterprise Linux 6samba4Affected
Red Hat Enterprise Linux 6sambaFixedRHSA-2017:278921.09.2017
Red Hat Enterprise Linux 7sambaFixedRHSA-2017:126522.05.2017
Red Hat Gluster Storage 3.2 for RHEL 7sambaFixedRHSA-2017:233801.08.2017
Red Hat Gluster Storage 3.3 for RHEL 6libldbFixedRHSA-2017:277821.09.2017
Red Hat Gluster Storage 3.3 for RHEL 6libtallocFixedRHSA-2017:277821.09.2017
Red Hat Gluster Storage 3.3 for RHEL 6libtdbFixedRHSA-2017:277821.09.2017
Red Hat Gluster Storage 3.3 for RHEL 6libteventFixedRHSA-2017:277821.09.2017

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-362
https://bugzilla.redhat.com/show_bug.cgi?id=1429472samba: symlink race permits opening files outside share directory

EPSS

Процентиль: 95%
0.2026
Средний

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.

CVSS3: 7.5
nvd
больше 7 лет назад

Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.

CVSS3: 7.5
debian
больше 7 лет назад

Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a mali ...

suse-cvrf
около 8 лет назад

Security update for samba

suse-cvrf
около 8 лет назад

Security update for samba

EPSS

Процентиль: 95%
0.2026
Средний

5.9 Medium

CVSS3