<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sun, 04 Oct 2026 16:11:09 +0000</lastBuildDate>
    <item>
      <title>ALSA-2022:2074 — Moderate: samba security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2022:2074</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: ctdb, AlmaLinux:8: libsmbclient, AlmaLinux:8: libsmbclient-devel, AlmaLinux:8: libwbclient, AlmaLinux:8: libwbclient-devel, AlmaLinux:8: python3-samba, AlmaLinux:8: python3-samba-test, AlmaLinux:8: samba, AlmaLinux:8: samba-client, AlmaLinux:8: samba-client-libs and 15 more&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.
The following packages have been upgraded to a later upstream version: samba (4.15.5). (BZ#2013596)
Security Fix(es):
* samba: Symlink race error can allow metadata read and modify outside of the exported share (CVE-2021-20316)
* samba: Information leak via symlinks of existance of files or directories outside of the exported share (CVE-2021-44141)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: ctdb, AlmaLinux:8: libsmbclient, AlmaLinux:8: libsmbclient-devel, AlmaLinux:8: libwbclient, AlmaLinux:8: libwbclient-devel, AlmaLinux:8: python3-samba, AlmaLinux:8: python3-samba-test, AlmaLinux:8: samba, AlmaLinux:8: samba-client, AlmaLinux:8: samba-client-libs and 15 more&lt;/p&gt;
&lt;p&gt;Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.
The following packages have been upgraded to a later upstream version: samba (4.15.5). (BZ#2013596)
Security Fix(es):
* samba: Symlink race error can allow metadata read and modify outside of the exported share (CVE-2021-20316)
* samba: Information leak via symlinks of existance of files or directories outside of the exported share (CVE-2021-44141)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2022:2074</guid>
    </item>
    <item>
      <title>bdu:2022-00685</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2022-00685</link>
      <description>bdu:2022-00685</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2022-00685</guid>
    </item>
    <item>
      <title>certfr-2022-avi-096 — De multiples vulnérabilités ont été découvertes dans Samba. Certaines
d'entre elles permettent à un attaquant de provoq…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2022-avi-096</link>
      <description>certfr-2022-avi-096</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2022-avi-096</guid>
    </item>
    <item>
      <title>EUVD-2026-32831</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-32831</link>
      <description>EUVD-2026-32831</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-32831</guid>
    </item>
    <item>
      <title>fkie_cve-2021-44141</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-44141</link>
      <description>&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-44141</guid>
    </item>
    <item>
      <title>GHSA-fmfh-pcgm-2499</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-fmfh-pcgm-2499</link>
      <description>&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-fmfh-pcgm-2499</guid>
    </item>
    <item>
      <title>gsd-2021-44141</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-44141</link>
      <description>gsd-2021-44141</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-44141</guid>
    </item>
    <item>
      <title>msrc_CVE-2021-44141 — All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a fil…</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2021-44141</link>
      <description>msrc_CVE-2021-44141</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2021-44141</guid>
    </item>
    <item>
      <title>OESA-2022-1770 — samba security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2022-1770</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: samba&lt;/p&gt;
&lt;p&gt;Samba is a suite of programs for Linux and Unix to interoperate with Windows.&#13;
&#13;
Security Fix(es):&#13;
&#13;
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.(CVE-2021-44141)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS: samba&lt;/p&gt;
&lt;p&gt;Samba is a suite of programs for Linux and Unix to interoperate with Windows.&#13;
&#13;
Security Fix(es):&#13;
&#13;
All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.(CVE-2021-44141)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2022-1770</guid>
    </item>
    <item>
      <title>RHSA-2022:1756 — Red Hat Security Advisory: samba security, bug fix and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:1756</link>
      <description>&lt;p&gt;samba: Symlink race error can allow metadata read and modify outside of the exported share samba: Information leak via symlinks of existance of files or directories outside of the exported share&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;samba: Symlink race error can allow metadata read and modify outside of the exported share samba: Information leak via symlinks of existance of files or directories outside of the exported share&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:1756</guid>
    </item>
    <item>
      <title>RHSA-2022:2074 — Red Hat Security Advisory: samba security, bug fix, and enhancement update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2022:2074</link>
      <description>&lt;p&gt;samba: Symlink race error can allow metadata read and modify outside of the exported share samba: Information leak via symlinks of existance of files or directories outside of the exported share&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;samba: Symlink race error can allow metadata read and modify outside of the exported share samba: Information leak via symlinks of existance of files or directories outside of the exported share&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2022:2074</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-44141</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-44141</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: samba, Ubuntu:Pro:16.04:LTS: samba, Ubuntu:Pro:18.04:LTS: samba, Ubuntu:Pro:20.04:LTS: samba, Ubuntu:22.04:LTS: samba&lt;/p&gt;
&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: samba, Ubuntu:Pro:16.04:LTS: samba, Ubuntu:Pro:18.04:LTS: samba, Ubuntu:Pro:20.04:LTS: samba, Ubuntu:22.04:LTS: samba&lt;/p&gt;
&lt;p&gt;All versions of Samba prior to 4.15.5 are vulnerable to a malicious client using a server symlink to determine if a file or directory exists in an area of the server file system not exported under the share definition. SMB1 with unix extensions has to be enabled in order for this attack to succeed.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-44141</guid>
    </item>
    <item>
      <title>WID-SEC-W-2022-0466 — Samba: Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0466</link>
      <description>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Samba ausnutzen, um Informationen offenzulegen, um einen Denial of Service Zustand herbeizuführen, um Rechte zu erlangen und um beliebigen Code mit Root-Rechten auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, authentisierter Angreifer kann mehrere Schwachstellen in Samba ausnutzen, um Informationen offenzulegen, um einen Denial of Service Zustand herbeizuführen, um Rechte zu erlangen und um beliebigen Code mit Root-Rechten auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2022-0466</guid>
    </item>
  </channel>
</rss>
