Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Mageia: 2022-0054 Critical Samba Flaws Resolved - Remote Code Execution

mageia
Calendar Grey February 9, 2022
Dist Mageia Esm H88
Addressing Samba security vulnerabilities as detailed in MGASA-2022-0054, including potential workarounds and preventive measures to enhance system security.
For CVE-2021-20316 and CVE-2021-44141, there is only a workaround and mitigation: All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink...

Summary

For CVE-2021-20316 and CVE-2021-44141, there is only a workaround and mitigation:
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.
Clients that have write access to the exported part of the file system under a share via SMB1 unix extensions or via NFS can create symlinks that point to arbitrary files or directories on the server filesystem.
Clients can then use SMB1 unix extension information queries to determine if the target of the symlink exists or not by examining error codes returned from the smbd server. There is no ability to access these files or directories, only to determine if they exist or not.
If SMB1 is turned off and only SMB2 is used, or unix extensions are not enabled then there is no way to discover if a symlink points...

Read the Full Advisory

References

- https://bugs.mageia.org/show_bug.cgi?id=29974

-

-

-

-

- https://ubuntu.com/security/notices/USN-5260-1

-

- https://lists.suse.com/pipermail/sle-security-updates/2022-February/010164.html

-

- https://www.cve.org/CVERecord?id=CVE-2021-20316

- https://www.cve.org/CVERecord?id=CVE-2021-44141

- https://www.cve.org/CVERecord?id=CVE-2021-44142

- https://www.cve.org/CVERecord?id=CVE-2022-0336

Resolution

SRPMS

- 8/core/samba-4.14.12-1.mga8

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 09 Feb 2022
URL: https://advisories.mageia.org/MGASA-2022-0054.html
Type: security
CVE: CVE-2021-20316, CVE-2021-44141, CVE-2021-44142, CVE-2022-0336

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here