Logo
vulnerabilityCVE-2025-9640
Name
CVE-2025-9640
Source
NVD ( link)Debian ( link)
Description
A flaw was found in Samba, in the vfs_streams_xattr module, where uninitialized heap memory could be written into alternate data streams. This allows an authenticated user to read residual memory content that may include sensitive data, resulting in an information disclosure vulnerability.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
samba
Exploitable

Vulnerability Ratings#


4.3
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
4.22.11
Not Affected
buildroot
master
4.24.6
Not Affected
openwrt
master
4.24.5-r1
Not Affected
openwrt
openwrt-25.12
4.22.7-r3
Not Affected
yocto
master
4.23.11
Not Affected
yocto
scarthgap
4.19.9
Exploitable