CVE-2025-0620
published 2025-06-06CVE-2025-0620: A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can…
PriorityP424medium4.9CVSS 3.1
AVNACLPRHUINSUCHINAN
EPSS
0.62%
45.9th percentile
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | samba | < samba 2:4.22.2+dfsg-1 (forky) | samba 2:4.22.2+dfsg-1 (forky) |
| samba | samba | >= 0 < 2:4.22.2+dfsg-1 | 2:4.22.2+dfsg-1 |
| samba | samba | >= 0 < 2:4.22.2+dfsg-1 | 2:4.22.2+dfsg-1 |
| samba | samba | >= 4.21.0 < 4.21.6 | 4.21.6 |
| samba | samba | >= 4.22.0 < 4.22.2 | 4.22.2 |
CVSS provenance
nvdv3.14.9MEDIUMCVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
osv4.9MEDIUM
vendor_redhat5.1MEDIUM
vendor_debian4.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
CVE-2025-0620: A flaw was found in Samba
osv·2025-06-06·CVSS 4.9
CVE-2025-0620 [MEDIUM] CVE-2025-0620: A flaw was found in Samba
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
GHSA
GHSA-8q8w-8225-6gq4: A flaw was found in Samba
ghsa_unreviewed·2025-06-06
CVE-2025-0620 [MEDIUM] CWE-552 GHSA-8q8w-8225-6gq4: A flaw was found in Samba
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
Ubuntu
Samba vulnerability
vendor_ubuntu·2025-06-10
CVE-2025-0620 Samba vulnerability
Title: Samba vulnerability
Summary: Samba could allow unintended access to network services.
It was discovered that Samba incorrectly handled certain group membership
changes when using Kerberos authentication. A remote user could possibly
use this issue to continue to access resources after being removed by an
administrator.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
screen: Screen by Default Creates World Writable PTYs
vendor_redhat·2025-05-13·CVSS 5.1
CVE-2025-46803 [MEDIUM] CWE-282 screen: Screen by Default Creates World Writable PTYs
screen: Screen by Default Creates World Writable PTYs
The default mode of pseudo terminals (PTYs) allocated by Screen was changed from 0620 to 0622, thereby allowing anyone to write to any Screen PTYs in the system.
A flaw was found in Screen. The default mode for pseudo-terminals (PTYs) allocated by Screen was changed from 0620 to 0622. This vulnerability allows public writes to any PTYs in the system.
Statement: The change in the default PTY mode from 0620 to 0622 in Screen represents a significant security vulnerability because it directly exposes privileged terminal sessions to unauthorized local modification. In multi-user environments, PTYs act as communication endpoints between user shells and the system, and world-writable PTYs (0622) allow any user on the system to inject arbit
Debian
CVE-2025-0620: samba - A flaw was found in Samba. The smbd service daemon does not pick up group member...
vendor_debian·2025·CVSS 4.9
CVE-2025-0620 [MEDIUM] CVE-2025-0620: samba - A flaw was found in Samba. The smbd service daemon does not pick up group member...
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved (fixed in 2:4.22.2+dfsg-1)
sid: resolved (fixed in 2:4.22.2+dfsg-1)
trixie: resolved (fixed in 2:4.22.2+dfsg-1)
Red Hat
samba: smbd doesn't pick up group membership changes when re-authenticating an expired SMB session
vendor_redhat·2024-06-03·CVSS 4.9
CVE-2025-0620 [MEDIUM] CWE-552 samba: smbd doesn't pick up group membership changes when re-authenticating an expired SMB session
samba: smbd doesn't pick up group membership changes when re-authenticating an expired SMB session
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.
Package: samba (Red Hat Enterprise Linux 10) - Fix deferred
Package: samba (Red Hat Enterprise Linux 6) - Not affected
Package: samba4 (Red Hat Enterprise Linux 6) - Not affected
Package: samba (Red Hat Enterprise Linux 7) - Not affected
Package: s
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-06-06
Published