CVE-2009-2906
published 2009-10-07CVE-2009-2906: smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service…
PriorityP417medium4CVSS 2.0
AVNACLAuSCNINAP
EPSS
4.21%
89.9th percentile
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | samba | < samba 2:3.4.2-1 (bookworm) | samba 2:3.4.2-1 (bookworm) |
| samba | samba | < 3.0.37 | 3.0.37 |
| samba | samba | — | — |
| samba | samba | — | — |
| samba | samba | >= 0 < 2:3.4.2-1 | 2:3.4.2-1 |
| samba | samba | >= 0 < 2:3.4.2-1 | 2:3.4.2-1 |
| samba | samba | >= 0 < 2:3.4.2-1 | 2:3.4.2-1 |
| samba | samba | >= 0 < 2:3.4.2-1 | 2:3.4.2-1 |
| samba | samba | >= 3.2.0 < 3.2.15 | 3.2.15 |
| samba | samba | >= 3.3.0 < 3.3.8 | 3.3.8 |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
osv4.0MEDIUM
vendor_ubuntu9.3CRITICAL
vendor_debian4.0LOW
vendor_redhat4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
samba: infinite loop flaw in smbd on unexpected oplock break notification reply
vendor_redhat·2009-10-01·CVSS 4.0
CVE-2009-2906 [MEDIUM] CWE-835 samba: infinite loop flaw in smbd on unexpected oplock break notification reply
samba: infinite loop flaw in smbd on unexpected oplock break notification reply
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
Ubuntu
Samba vulnerabilities
vendor_ubuntu·2009-10-01·CVSS 9.3
CVE-2009-1886 [CRITICAL] Samba vulnerabilities
Title: Samba vulnerabilities
Summary: Samba vulnerabilities
J. David Hester discovered that Samba incorrectly handled users that lack
home directories when the automated [homes] share is enabled. An
authenticated user could connect to that share name and gain access to the
whole filesystem. (CVE-2009-2813)
Tim Prouty discovered that the smbd daemon in Samba incorrectly handled
certain unexpected network replies. A remote attacker could send malicious
replies to the server and cause smbd to use all available CPU, leading to a
denial of service. (CVE-2009-2906)
Ronald Volgers discovered that the mount.cifs utility, when installed as a
setuid program, would not verify user permissions before opening a
credentials file. A local user could exploit this to use or read the
contents of unautho
Debian
CVE-2009-2906: samba - smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 be...
vendor_debian·2009·CVSS 4.0
CVE-2009-2906 [MEDIUM] CVE-2009-2906: samba - smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 be...
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
Scope: local
bookworm: resolved (fixed in 2:3.4.2-1)
bullseye: resolved (fixed in 2:3.4.2-1)
forky: resolved (fixed in 2:3.4.2-1)
sid: resolved (fixed in 2:3.4.2-1)
trixie: resolved (fixed in 2:3.4.2-1)
GHSA
GHSA-rqxx-j33q-88vv: smbd in Samba 3
ghsa_unreviewed·2022-05-02
CVE-2009-2906 [MEDIUM] CWE-835 GHSA-rqxx-j33q-88vv: smbd in Samba 3
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
OSV
CVE-2009-2906: smbd in Samba 3
osv·2009-10-07·CVSS 4.0
CVE-2009-2906 [MEDIUM] CVE-2009-2906: smbd in Samba 3
smbd in Samba 3.0 before 3.0.37, 3.2 before 3.2.15, 3.3 before 3.3.8, and 3.4 before 3.4.2 allows remote authenticated users to cause a denial of service (infinite loop) via an unanticipated oplock break notification reply packet.
No detection rules found.
No public exploits indexed.
http://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.htmlhttp://news.samba.org/releases/3.0.37/http://news.samba.org/releases/3.2.15/http://news.samba.org/releases/3.3.8/http://news.samba.org/releases/3.4.2/http://osvdb.org/58519http://samba.org/samba/security/CVE-2009-2906.htmlhttp://secunia.com/advisories/36893http://secunia.com/advisories/36918http://secunia.com/advisories/36937http://secunia.com/advisories/36953http://secunia.com/advisories/37428http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.561439http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021111.1-1http://support.apple.com/kb/HT4077http://wiki.rpath.com/Advisories:rPSA-2009-0145http://www.securityfocus.com/archive/1/507856/100/0/threadedhttp://www.securityfocus.com/bid/36573http://www.securitytracker.com/id?1022976http://www.ubuntu.com/usn/USN-839-1http://www.vupen.com/english/advisories/2009/2810https://exchange.xforce.ibmcloud.com/vulnerabilities/53575https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7090https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9944https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00095.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-October/msg00098.htmlhttp://lists.apple.com/archives/security-announce/2010//Mar/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2009-10/msg00004.htmlhttp://news.samba.org/releases/3.0.37/http://news.samba.org/releases/3.2.15/http://news.samba.org/releases/3.3.8/http://news.samba.org/releases/3.4.2/http://osvdb.org/58519http://samba.org/samba/security/CVE-2009-2906.htmlhttp://secunia.com/advisories/36893http://secunia.com/advisories/36918http://secunia.com/advisories/36937http://secunia.com/advisories/36953http://secunia.com/advisories/37428http://slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.561439http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021111.1-1http://support.apple.com/kb/HT4077http://wiki.rpath.com/Advisories:rPSA-2009-0145http://www.securityfocus.com/archive/1/507856/100/0/threadedhttp://www.securityfocus.com/bid/36573http://www.securitytracker.com/id?1022976http://www.ubuntu.com/usn/USN-839-1http://www.vupen.com/english/advisories/2009/2810https://exchange.xforce.ibmcloud.com/vulnerabilities/53575https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7090https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9944https://www.redhat.com/archives/fedora-package-announce/2009-October/msg00095.htmlhttps://www.redhat.com/archives/fedora-package-announce/2009-October/msg00098.html
2009-10-07
Published