SMB: Samba Root File System Access Exploit

This signature detects attempts to exploit a known vulnerability against Samba. A successful attack can lead to arbitrary file access and possible code execution.

Extended Description

Samba is prone to an unauthorized-access vulnerability that occurs when registry shares are enabled. An attacker who has authenticated access to the affected application can exploit this issue to gain access to the root filesystem.

Affected Products

Samba samba

Short Name
SMB:SAMBA:ROOT-SYS
Severity
Major
Recommended
False
Recommended Action
Drop
Category
SMB
Keywords
Access CVE-2009-0022 Exploit File Root Samba System bid:33118
Release Date
01/13/2009
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Red_hat

Samba

Suse

Pardus

Slackware

Ubuntu

Mandriva

CVSS Score

6.3

Found a potential security threat?