Samba vfs_fruit module out of bounds heap read and write (CVE-2021-44142)
Samba vfs_fruit module out of bounds heap read and write allowing arbitrary code execution
Summary
This vulnerability applies when the Samba extension module 'vfs_fruit' is in use. All Buffalo NAS devices supported by this reporting either do not use 'vfs_fruit', have an in-version Samba patch applied if the extention is in use, or is not using an affected version of Samba.
Vulnerability ID | Vulnerability Overview |
---|---|
CVE-2021-44142 | The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root. |
Affected Supported TeraStations
None
Date | Description |
3/16/2022 | Initial release |
5/2/2023 | Updated to reflect that TS7010 is running an unaffected version of Samba |