header

Samba vfs_fruit module out of bounds heap read and write (CVE-2021-44142)


Mar 16, 2023
Share

Samba vfs_fruit module out of bounds heap read and write allowing arbitrary code execution

Summary

This vulnerability applies when the Samba extension module 'vfs_fruit' is in use. All Buffalo NAS devices supported by this reporting either do not use 'vfs_fruit', have an in-version Samba patch applied if the extention is in use, or is not using an affected version of Samba.

Vulnerability ID Vulnerability Overview
CVE-2021-44142 The Samba vfs_fruit module uses extended file attributes (EA, xattr) to provide "...enhanced compatibility with Apple SMB clients and interoperability with a Netatalk 3 AFP fileserver." Samba versions prior to 4.13.17, 4.14.12 and 4.15.5 with vfs_fruit configured allow out-of-bounds heap read and write via specially crafted extended file attributes. A remote attacker with write access to extended file attributes can execute arbitrary code with the privileges of smbd, typically root.

Affected Supported TeraStations

None

Back to Security Notices

Date Description
3/16/2022 Initial release
5/2/2023 Updated to reflect that TS7010 is running an unaffected version of Samba
X