GSD-2021-44142

Source
https://data.gsd.id/GSD-2021-44142
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/44xxx/GSD-2021-44142.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2021-44142
Published
2022-02-01T23:00:11.123456Z
Modified
2026-02-23T02:58:39.561203Z
Summary
Remote code execution as root in Samba prior to version 4.13.17
Details

To quote the Samba advisory:

All versions of Samba prior to 4.13.17 are vulnerable to an out-of-bounds heap read write vulnerability that allows remote attackers to execute arbitrary code as root on affected Samba installations that use the VFS module vfs_fruit.

The specific flaw exists within the parsing of EA metadata when opening files in smbd. Access as a user that has write access to a file's extended attributes is required to exploit this vulnerability. Note that this could be a guest or unauthenticated user if such users are allowed write access to file extended attributes.

The problem in vfs_fruit exists in the default configuration of the fruit VFS module using fruit:metadata=netatalk or fruit:resource=file. If both options are set to different settings than the default values, the system is not affected by the security issue.

References

Affected packages