A flaw was found in the samba client, all samba versions before samba 4.11.2, 4.10.10 and 4.9.15, where a malicious server can supply a pathname to the client with separators. This could allow the client to access files and folders outside of the SMB network pathnames. An attacker could use this vulnerability to create files outside of the current working directory using the privileges of the client user.
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-libs": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "registry-tools": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbsharemodes0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-doc": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbsharemodes0": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "python-samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbsharemodes-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbsharemodes-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "python-samba": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libpam-smbpass-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-common": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "smbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "samba-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3", "libpam-smbpass": "2:4.3.11+dfsg-0ubuntu0.14.04.20+esm3" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.23", "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.23" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-libs": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "registry-tools": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-common-bin": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libwbclient0-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-dsdb-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libpam-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libnss-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-vfs-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "python-samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-common-bin-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-testsuite": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "smbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libsmbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libwbclient0": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libsmbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "python-samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-dsdb-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "registry-tools-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-vfs-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "ctdb": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libnss-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libsmbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-libs-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-testsuite-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-common": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libpam-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "smbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "samba-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "libparse-pidl-perl": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13", "ctdb-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.13" } ] }