VYPR
Unrated severityOSV Advisory· Published Jun 6, 2025· Updated Mar 18, 2026

Samba: smbd doesn't pick up group membership changes when re-authenticating an expired smb session

CVE-2025-0620

Description

A flaw was found in Samba. The smbd service daemon does not pick up group membership changes when re-authenticating an expired SMB session. This issue can expose file shares until clients disconnect and then connect again.

Affected products

5

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.