VYPR
High severity7.2NVD Advisory· Published Dec 29, 2015· Updated Jun 17, 2026

CVE-2015-5252

CVE-2015-5252

Description

vfs.c in smbd in Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, when share names with certain substring relationships exist, allows remote attackers to bypass intended file-access restrictions via a symlink that points outside of a share.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

67

Patches

Vulnerability mechanics

References

24

News mentions

0

No linked articles in our index yet.