rpm package
almalinux/samba-vfs-iouring
pkg:rpm/almalinux/samba-vfs-iouring
Vulnerabilities (23)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2021-44142 | Hig | 8.8 | < 4.14.5-9.el8_5 | 4.14.5-9.el8_5 | Feb 21, 2022 | The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bou | |
| CVE-2020-25717 | Hig | 8.1 | < 4.14.5-7.el8_5 | 4.14.5-7.el8_5 | Feb 18, 2022 | A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation. | |
| CVE-2016-2124 | Med | 5.9 | < 4.14.5-7.el8_5 | 4.14.5-7.el8_5 | Feb 18, 2022 | A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required. |
- affected < 4.14.5-9.el8_5fixed 4.14.5-9.el8_5
The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bou
- affected < 4.14.5-7.el8_5fixed 4.14.5-7.el8_5
A flaw was found in the way Samba maps domain users to local users. An authenticated attacker could use this flaw to cause possible privilege escalation.
- affected < 4.14.5-7.el8_5fixed 4.14.5-7.el8_5
A flaw was found in the way samba implemented SMB1 authentication. An attacker could use this flaw to retrieve the plaintext password sent over the wire even if Kerberos authentication was required.
Page 2 of 2