CVE-2009-0022

Published Jan 5, 2009

Last updated 6 years ago

Overview

Description
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name.
Source
secalert@redhat.com
NVD status
Modified

Social media

Hype score
Not currently trending

Risk scores

CVSS 2.0

Type
Primary
Base score
6.3
Impact score
6.9
Exploitability score
6.8
Vector string
AV:N/AC:M/Au:S/C:C/I:N/A:N

Weaknesses

nvd@nist.gov
CWE-20

Evaluator

Comment
-
Impact
-
Solution
-

Vendor comments

  • Red HatNot vulnerable. This issue did not affect the versions of samba as shipped with Red Hat Enterprise Linux 2.1, 3, 4, or 5.

Configurations