CVE-2015-5252
Last modified
CVE-2015-5252 is a high-severity vulnerability rated 7.2/10 on the CVSS scale. vfs.c in smbd in Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, when share names with certain substring relationships exist, allows remote attackers to bypass intended file-access restrictions via a symlink that points outside of a share.. EPSS estimates a 13.27% chance of exploitation in the next 30 days.
Description
vfs.c in smbd in Samba 3.x and 4.x before 4.1.22, 4.2.x before 4.2.7, and 4.3.x before 4.3.3, when share names with certain substring relationships exist, allows remote attackers to bypass intended file-access restrictions via a symlink that points outside of a share.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 3.0.0, < 4.1.22 |
| Samba | Samba | >= 4.2.0, < 4.2.7 |
| Samba | Samba | >= 4.3.0, < 4.3.3 |
| Canonical | Ubuntu Linux | 12.04 |
| Canonical | Ubuntu Linux | 14.04 |
| Canonical | Ubuntu Linux | 15.04 |
| Canonical | Ubuntu Linux | 15.10 |
| Debian | Debian Linux | 7.0 |
| Debian | Debian Linux | 8.0 |
References
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00019.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00020.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00032.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00033.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00002.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00017.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00042.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00046.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00047.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00048.htmlMailing List, Third Party Advisory
- http://www.debian.org/security/2016/dsa-3433Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlThird Party Advisory
- http://www.securityfocus.com/bid/79733Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1034493Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2855-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2855-2Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1290288Issue Tracking, Third Party Advisory
- https://security.gentoo.org/glsa/201612-47Third Party Advisory
- https://www.samba.org/samba/security/CVE-2015-5252.htmlExploit, Vendor Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00019.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00020.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00032.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00033.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00002.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00017.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00042.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00046.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00047.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00048.htmlMailing List, Third Party Advisory
- http://www.debian.org/security/2016/dsa-3433Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.htmlThird Party Advisory
- http://www.securityfocus.com/bid/79733Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1034493Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-2855-1Third Party Advisory
- http://www.ubuntu.com/usn/USN-2855-2Third Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1290288Issue Tracking, Third Party Advisory
- https://security.gentoo.org/glsa/201612-47Third Party Advisory
- https://www.samba.org/samba/security/CVE-2015-5252.htmlExploit, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-5252?
How severe is CVE-2015-5252?
How do I fix CVE-2015-5252?
Are you affected by CVE-2015-5252?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
