Back

MEDIUM

Samba: Share restriction bypass via home-less directory user account(s)

Published Sep 14, 2009

Description

Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.

Affected products

Remediation

No remediation recorded yet.

Weaknesses (1)

References (34)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Sep 14, 2009
Updated Aug 7, 2024
Reserved Aug 17, 2009
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Low
Public date Sep 10, 2009