CVE-2019-9579
published 2022-12-26CVE-2019-9579: An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access…
PriorityP345high8.1CVSS 3.1
AVNACLPRLUINSUCHIHAN
EPSS
0.50%
40.2th percentile
An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access, e.g., an attacker with WRITE_XATTR can change permissions. This occurs because of a combination of three factors: ZFS extended attributes are used to implement NT named streams, the SMB protocol requires implementations to have open handle semantics similar to those of NTFS, and the SMB server passes along certain attribute requests to the underlying object (i.e., they are not considered to be requests that pertain to the named stream).
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | solaris | — | — |
CVSS provenance
nvdv3.18.1HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
vendor_oracle3.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Oracle
Oracle Oracle Systems Risk Matrix: SMB Server — CVE-2019-9579
vendor_oracle·2020-01-15·CVSS 3.3
CVE-2019-9579 [HIGH] Oracle Oracle Systems Risk Matrix: SMB Server — CVE-2019-9579
Oracle Oracle Systems Risk Matrix: SMB Server vulnerability
CVE: CVE-2019-9579
CVSS: 3.3
Protocol: None
Remote exploit: No
Affected versions: Local
Advisory: cpujan2020 (JAN 2020)
GHSA
GHSA-79p4-hp34-c4rw: An issue was discovered in Illumos in Nexenta NexentaStor 4
ghsa_unreviewed·2022-12-26
CVE-2019-9579 [HIGH] CWE-276 GHSA-79p4-hp34-c4rw: An issue was discovered in Illumos in Nexenta NexentaStor 4
An issue was discovered in Illumos in Nexenta NexentaStor 4.0.5 and 5.1.2, and other products. The SMB server allows an attacker to have unintended access, e.g., an attacker with WRITE_XATTR can change permissions. This occurs because of a combination of three factors: ZFS extended attributes are used to implement NT named streams, the SMB protocol requires implementations to have open handle semantics similar to those of NTFS, and the SMB server passes along certain attribute requests to the underlying object (i.e., they are not considered to be requests that pertain to the named stream).
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-26
Published