SMB: Samba Directory Traversal

This signature detects SMB requests for pathnames that attempt to traverse the server root. Samba 3.0.5 and earlier versions are vulnerable. Malicious users can send "get", "put", and "dir" commands to a Samba server to access files outside the shared directories.

Extended Description

Samba is affected by a remote arbitrary file access vulnerability. This issue is due to a failure of the application to properly validate user-supplied file names. An attacker may leverage this issue to gain access to files outside of a Samba share's path on a vulnerable computer. Information gained in this way may reveal sensitive information aiding in further attacker against the computer.

Affected Products

Suse linux_desktop

Short Name
SMB:EXPLOIT:SAMBA-DIR-TRAV
Severity
Minor
Recommended
False
Recommended Action
None
Category
SMB
Keywords
CVE-2004-0815 Directory Samba Traversal bid:11281
Release Date
10/14/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Red_hat

Samba

Suse

Sun

Hp

Conectiva

Mandriva

CVSS Score

7.5

Found a potential security threat?