CVE-2009-2813
published 2009-09-14CVE-2009-2813: Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File…
PriorityP430medium6CVSS 2.0
AVNACMAuSCPIPAP
EPSS
2.73%
84.5th percentile
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.
Affected
78 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | mac_os_x | — | — |
| apple | mac_os_x_server | — | — |
| debian | samba | < samba 2:3.4.2-1 (bookworm) | samba 2:3.4.2-1 (bookworm) |
| fedoraproject | fedora | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | — | — |
CVSS provenance
nvdv2.06.0MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:P
osv6.0MEDIUM
vendor_ubuntu9.3CRITICAL
vendor_debian6.0MEDIUM
vendor_redhat6.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Samba vulnerabilities
vendor_ubuntu·2009-10-01·CVSS 9.3
CVE-2009-1886 [CRITICAL] Samba vulnerabilities
Title: Samba vulnerabilities
Summary: Samba vulnerabilities
J. David Hester discovered that Samba incorrectly handled users that lack
home directories when the automated [homes] share is enabled. An
authenticated user could connect to that share name and gain access to the
whole filesystem. (CVE-2009-2813)
Tim Prouty discovered that the smbd daemon in Samba incorrectly handled
certain unexpected network replies. A remote attacker could send malicious
replies to the server and cause smbd to use all available CPU, leading to a
denial of service. (CVE-2009-2906)
Ronald Volgers discovered that the mount.cifs utility, when installed as a
setuid program, would not verify user permissions before opening a
credentials file. A local user could exploit this to use or read the
contents of unautho
Red Hat
Samba: Share restriction bypass via home-less directory user account(s)
vendor_redhat·2009-09-10·CVSS 6.0
CVE-2009-2813 [MEDIUM] Samba: Share restriction bypass via home-less directory user account(s)
Samba: Share restriction bypass via home-less directory user account(s)
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.
Debian
CVE-2009-2813: samba - Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through ...
vendor_debian·2009·CVSS 6.0
CVE-2009-2813 [MEDIUM] CVE-2009-2813: samba - Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through ...
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.
Scope: local
bookworm: resolved (fixed in 2:3.4.2-1)
bullseye: resolved (fixed in 2:3.4.2-1)
forky: resolved (fixed in 2:3.4.2-1)
sid: resolved (fixed in 2:3.4.2-1)
trixie: resolved (fixed in 2:3.4.2-1)
GHSA
GHSA-2hg7-9ph2-q8p9: Samba 3
ghsa_unreviewed·2022-05-02
CVE-2009-2813 [MEDIUM] GHSA-2hg7-9ph2-q8p9: Samba 3
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.
OSV
CVE-2009-2813: Samba 3
osv·2009-09-14·CVSS 6.0
CVE-2009-2813 [MEDIUM] CVE-2009-2813: Samba 3
Samba 3.4 before 3.4.2, 3.3 before 3.3.8, 3.2 before 3.2.15, and 3.0.12 through 3.0.36, as used in the SMB subsystem in Apple Mac OS X 10.5.8 when Windows File Sharing is enabled, Fedora 11, and other operating systems, does not properly handle errors in resolving pathnames, which allows remote authenticated users to bypass intended sharing restrictions, and read, create, or modify files, in certain circumstances involving user accounts that lack home directories.
No detection rules found.
No public exploits indexed.
http://lists.apple.com/archives/security-announce/2009/Sep/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.htmlhttp://marc.info/?l=bugtraq&m=126514298313071&w=2http://news.samba.org/releases/3.0.37/http://news.samba.org/releases/3.2.15/http://news.samba.org/releases/3.3.8/http://news.samba.org/releases/3.4.2/http://osvdb.org/57955http://secunia.com/advisories/36701http://secunia.com/advisories/36893http://secunia.com/advisories/36918http://secunia.com/advisories/36937http://secunia.com/advisories/36953http://secunia.com/advisories/37428http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.561439http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021111.1-1http://support.apple.com/kb/HT3865http://wiki.rpath.com/Advisories:rPSA-2009-0145http://www.samba.org/samba/security/CVE-2009-2813.htmlhttp://www.securityfocus.com/archive/1/507856/100/0/threadedhttp://www.securityfocus.com/bid/36363http://www.ubuntu.com/usn/USN-839-1http://www.vupen.com/english/advisories/2009/2810https://exchange.xforce.ibmcloud.com/vulnerabilities/53174https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7211https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7257https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7791https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9191https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00095.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-October/msg00098.htmlhttp://lists.apple.com/archives/security-announce/2009/Sep/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.htmlhttp://marc.info/?l=bugtraq&m=126514298313071&w=2http://news.samba.org/releases/3.0.37/http://news.samba.org/releases/3.2.15/http://news.samba.org/releases/3.3.8/http://news.samba.org/releases/3.4.2/http://osvdb.org/57955http://secunia.com/advisories/36701http://secunia.com/advisories/36893http://secunia.com/advisories/36918http://secunia.com/advisories/36937http://secunia.com/advisories/36953http://secunia.com/advisories/37428http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.561439http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021111.1-1http://support.apple.com/kb/HT3865http://wiki.rpath.com/Advisories:rPSA-2009-0145http://www.samba.org/samba/security/CVE-2009-2813.htmlhttp://www.securityfocus.com/archive/1/507856/100/0/threadedhttp://www.securityfocus.com/bid/36363http://www.ubuntu.com/usn/USN-839-1http://www.vupen.com/english/advisories/2009/2810https://exchange.xforce.ibmcloud.com/vulnerabilities/53174https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7211https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7257https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7791https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9191https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00095.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-October/msg00098.html
2009-09-14
Published