Database/Control plane, storage & DevOps

Samba (SMB gateway): Out-of-bounds heap read/write in vfs_fruit
CVSS 8.8CVE-2021-44142Control plane, storage & DevOpscurated
Impact
Out-of-bounds heap read/write in vfs_fruit -> code execution as root on the file server
Who can reach it
Network (remote)
What to do
Data-plane: emergency smbd upgrade on every SMB gateway/file node
References
Related entries
- HTCondor (SciTokens authentication): A SciToken is granted more authorization than the token's scopes should permit.CVE-2021-45102 · HTCondor (SciTokens authentication)High
- PostgreSQL: Autovacuum, REINDEX, CLUSTER etc. apply protections too lateCVE-2022-1552 · PostgreSQLHigh
- Samba (AD DC): KDC and kpasswd share keysCVE-2022-2031 · Samba (AD DC)High
- Intel Data Center Manager: Improper access control in Data Center Manager lets an unauthenticated attackerCVE-2022-23182 · Intel Data Center ManagerHigh
- MinIO: Non-admin user can create service accounts for root/admin users and assume their policiesCVE-2022-24842 · MinIOHigh
- HTCondor (CLAIMTOBE authentication method): Once a user has authenticated to a daemon with CLAIMTOBE - a method thatCVE-2022-26110 · HTCondor (CLAIMTOBE authentication method)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.