VDB

DEBIAN-CVE-2017-2619

DEBIAN-CVE-2017-2619 PUBLISHED CVSS 7.5 HIGH

Samba before versions 4.6.1, 4.5.7 and 4.4.11 are vulnerable to a malicious client using a symlink race to allow access to areas of the server file system not exported under the share definition.

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersions
Debian:11samba0, 0, 0
Debian:12samba0, 0, 0
Debian:14samba0, 0, 0
Debian:13samba0, 0, 0

Timeline

  • Mar 12, 2018 CVE Published
  • Apr 28, 2026 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›