CVE-2009-0022
published 2009-01-05CVE-2009-0022: Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request…
PriorityP432medium6.3CVSS 2.0
AVNACMAuSCCINAN
EPSS
3.53%
88.0th percentile
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | samba | < samba 2:3.2.5-3 (bookworm) | samba 2:3.2.5-3 (bookworm) |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | >= 0 < 2:3.2.5-3 | 2:3.2.5-3 |
| samba | samba | >= 0 < 2:3.2.5-3 | 2:3.2.5-3 |
| samba | samba | >= 0 < 2:3.2.5-3 | 2:3.2.5-3 |
| samba | samba | >= 0 < 2:3.2.5-3 | 2:3.2.5-3 |
CVSS provenance
nvdv2.06.3MEDIUMAV:N/AC:M/Au:S/C:C/I:N/A:N
osv6.3MEDIUM
vendor_debian6.3MEDIUM
vendor_redhat6.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9j75-qv5f-pwv3: Samba 3
ghsa_unreviewed·2022-05-02
CVE-2009-0022 [MEDIUM] CWE-20 GHSA-9j75-qv5f-pwv3: Samba 3
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
OSV
CVE-2009-0022: Samba 3
osv·2009-01-05·CVSS 6.3
CVE-2009-0022 [MEDIUM] CVE-2009-0022: Samba 3
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
Red Hat
samba: potential access to "/" in setups with registry shares enabled
vendor_redhat·2009-01-05·CVSS 6.3
CVE-2009-0022 [MEDIUM] samba: potential access to "/" in setups with registry shares enabled
samba: potential access to "/" in setups with registry shares enabled
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
Statement: Not vulnerable. This issue did not affect the versions of samba as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.
Ubuntu
Samba vulnerability
vendor_ubuntu·2009-01-05
CVE-2009-0022 Samba vulnerability
Title: Samba vulnerability
Summary: Samba vulnerability
Gunter Höckel discovered that Samba with registry shares enabled did not
properly validate share names. An authenticated user could gain access to the
root filesystem by using an older version of smbclient and specifying an
empty string as a share name. This is only an issue if registry shares are
enabled on the server by setting "registry shares = yes", "include = registry",
or "config backend = registry", which is not the default.
Instructions: In general, a standard system upgrade is sufficient to effect the
necessary changes.
Debian
CVE-2009-0022: samba - Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authe...
vendor_debian·2009·CVSS 6.3
CVE-2009-0022 [MEDIUM] CVE-2009-0022: samba - Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authe...
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
Scope: local
bookworm: resolved (fixed in 2:3.2.5-3)
bullseye: resolved (fixed in 2:3.2.5-3)
forky: resolved (fixed in 2:3.2.5-3)
sid: resolved (fixed in 2:3.2.5-3)
trixie: resolved (fixed in 2:3.2.5-3)
No detection rules found.
No public exploits indexed.
Bugzilla
Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
bugzilla·2009-12-06·CVSS 6.8
CVE-2009-4297 [MEDIUM] Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
Moodle: Multiple security fixes in 1.9.7 and 1.8.11 upstream releases
Moodle upstream has released latest stable versions (1.9.7 and 1.8.11),
fixing multiple security issues.
The list for 1.9.7 release:
Security issues
* MSA-09-0022 - CVE-2009-4297 Multiple CSRF problems fixed
* MSA-09-0023 - CVE-2009-4298 Fixed user account disclosure in LAMS module
* MSA-09-0024 - CVE-2009-4299 Fixed insufficient access control in
Glossary module
* MSA-09-0025 - CVE-2009-4300 Unneeded MD5 hashes removed from user table
* MSA-09-0026 - CVE-2009-4301 Fixed invalid application access control
in MNET interface
* MSA-09-0027 - CVE-2009-4302 Ensured login information is always sent
secured when using SSL for logins
* MSA-09-0028 - CVE-2009-4303 Passwords and secrets are no longer ever
saved in backups, new
Bugzilla
CVE-2009-0022 samba: potential access to "/" in setups with registry shares enabled
bugzilla·2009-01-07·CVSS 6.3
CVE-2009-0022 [MEDIUM] CVE-2009-0022 samba: potential access to "/" in setups with registry shares enabled
CVE-2009-0022 samba: potential access to "/" in setups with registry shares enabled
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-0022 to the following vulnerability:
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows
remote authenticated users to access the root filesystem via a crafted
connection request that specifies a blank share name.
Issue was fixed upstream in 3.2.7.
Upstream advisory:
http://www.samba.org/samba/security/CVE-2009-0022.html
Upstream patch:
http://www.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patch
References:
http://secunia.com/advisories/33379
Discussion:
This issue did not affect the versions of samba as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.
---
samba-3.2.7-0.23.fc9 has been pu
http://master.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patchhttp://osvdb.org/51152http://secunia.com/advisories/33379http://secunia.com/advisories/33392http://secunia.com/advisories/33431http://www.mandriva.com/security/advisories?name=MDVSA-2009:042http://www.samba.org/samba/security/CVE-2009-0022.htmlhttp://www.securityfocus.com/bid/33118http://www.securitytracker.com/id?1021513http://www.vupen.com/english/advisories/2009/0017https://exchange.xforce.ibmcloud.com/vulnerabilities/47733https://usn.ubuntu.com/702-1/https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00309.htmlhttp://master.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patchhttp://osvdb.org/51152http://secunia.com/advisories/33379http://secunia.com/advisories/33392http://secunia.com/advisories/33431http://www.mandriva.com/security/advisories?name=MDVSA-2009:042http://www.samba.org/samba/security/CVE-2009-0022.htmlhttp://www.securityfocus.com/bid/33118http://www.securitytracker.com/id?1021513http://www.vupen.com/english/advisories/2009/0017https://exchange.xforce.ibmcloud.com/vulnerabilities/47733https://usn.ubuntu.com/702-1/https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00309.html
2009-01-05
Published