CVE-2023-3961
Summary
| CVE | CVE-2023-3961 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-03 13:15:00 UTC |
| Updated | 2024-01-02 21:15:00 UTC |
| Description | A path traversal vulnerability was identified in Samba when processing client pipe names connecting to Unix domain sockets within a private directory. Samba typically uses this mechanism to connect SMB clients to remote procedure call (RPC) services like SAMR LSA or SPOOLSS, which Samba initiates on demand. However, due to inadequate sanitization of incoming client pipe names, allowing a client to send a pipe name containing Unix directory traversal characters (../). This could result in SMB clients connecting as root to Unix domain sockets outside the private directory. If an attacker or client managed to send a pipe name resolving to an external service using an existing Unix domain socket, it could potentially lead to unauthorized access to the service and consequential adverse events, including compromise or service crashes. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161070 Oracle Enterprise Linux Security Update for samba (ELSA-2023-6744)
- 161196 Oracle Enterprise Linux Security Update for samba (ELSA-2023-7467)
- 242260 Red Hat Update for samba (RHSA-2023:6209)
- 242318 Red Hat Update for samba (RHSA-2023:6744)
- 242484 Red Hat Update for samba (RHSA-2023:7408)
- 242507 Red Hat Update for samba (RHSA-2023:7467)
- 242508 Red Hat Update for samba (RHSA-2023:7464)
- 284612 Fedora Security Update for samba (FEDORA-2023-7eb8cbf1a5)
- 284682 Fedora Security Update for samba (FEDORA-2023-fff0c857d6)
- 285191 Fedora Security Update for samba (FEDORA-2023-8c9251e479)
- 356630 Amazon Linux Security Advisory for samba : ALAS2023-2023-416
- 503395 Alpine Linux Security Update for samba
- 505937 Alpine Linux Security Update for samba
- 6000310 Debian Security Update for samba (DSA 5525-1)
- 710873 Gentoo Linux Samba Multiple Vulnerabilities (GLSA 202402-28)
- 755069 SUSE Enterprise Linux Security Update for samba (SUSE-SU-2023:4046-1)
- 941395 AlmaLinux Security Update for samba (ALSA-2023:6744)
- 941422 AlmaLinux Security Update for samba (ALSA-2023:7467)