Name
samba
Version
4.19.9
Type
library
Description
-
Licenses
GPL-3.0-or-later & LGPL-3.0-or-later & GPL-2.0-or-later
PURL
-
CPE
cpe:2.3:*:samba:samba:4.19.9:*:*:*:*:*:*:*
Other Versions#
Patches#
#
Title
Author
Resolve
1
Don't check xsltproc manpages
Bian Naimeng <biannm@cn.fujitsu.com>
2
smbtorture: skip test case tfork_cmd_send
Yi Zhao <yi.zhao@windriver.com>
3
Lifted from gentoo and ported to 4.4.5
Khem Raj <raj.khem@gmail.com>
4
Fix pyext_PATTERN for cross compilation
Yi Zhao <yi.zhao@windriver.com>
5
Add options to configure the use of libbsd
Peter Kjellerstedt <pkj@axis.com>
6
Add config option without-valgrind
Changqing Li <changqing.li@windriver.com>
7
Musl does not have _r versions of getent() and getpwent()
Khem Raj <raj.khem@gmail.com>
8
Deleted settiong of python to fix the install conflict error
Lei Maohui <leimaohui@fujitsu.com>
9
do not import target module while cross compile
Changqing Li <changqing.li@windriver.com>
Vulnerabilities#
Name
Analysis
Description
Exploitable
A flaw was found in Samba. A remote attacker can exploit a misconfiguration in Samba file servers and classic domain controllers that use the "check password script" feature. If this script is configured with the %u substitution character, the client-controlled username is passed without proper escaping of shell meta-characters. This vulnerability allows an attacker to achieve remote command execution on the affected system. This issue primarily affects non-standard configurations where the "check password script" is used with %u and the samba-dcerpcd service is started as a system service.
Exploitable
A flaw was found in Samba’s certificate auto-enrollment Group Policy handling. When certificate auto-enrollment is enabled, Samba may retrieve a CA certificate over an unencrypted HTTP connection and install it into the local trust store without proper verification. An attacker with the ability to intercept or redirect network traffic could exploit this behavior to supply a malicious certificate authority certificate, potentially allowing interception or spoofing of trusted communications.
Exploitable
A flaw was found in Samba’s vfs_worm module. The module is intended to provide write-once, read-many (WORM) protections by preventing modification of files after a configurable grace period. Due to insufficient validation during rename operations, an authenticated user with write access to a share could overwrite a protected file by renaming a newly created file over the existing WORM-protected file.
False Positive
Unspecified vulnerability on HP NonStop Servers with software H06.x through H06.23.00 and J06.x through J06.12.00, when Samba is used, allows remote authenticated users to execute arbitrary code via unknown vectors.