Out-of-Bounds Read and Write Vulnerability in Samba's vfs_fruit Module
CVE-2021-44142
Key Information:
Badges
What is CVE-2021-44142?
The Samba vfs_fruit module introduces a vulnerability that allows for out-of-bounds heap read and write operations, stemming from the use of extended file attributes (EAs). This issue can be exploited by a remote attacker who has write access to these attributes, enabling arbitrary code execution with the privileges of the smbd service, typically root. The vulnerability arises in configurations where the vfs_fruit module is active, affecting security and integrity in Samba versions prior to 4.13.17, 4.14.12, and 4.15.5.
Affected Version(s)
Samba < 4.13.17
Samba < 4.14.12
Samba < 4.15.5
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
EPSS Score
25% chance of being exploited in the next 30 days.
CVSS V3.1
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved