UBUNTU-CVE-2023-34968
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-34968
UBUNTU-CVE-2023-34968
Summary:
Details: A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side absolute path of shares, files, and directories in the results for search queries. This flaw allows a malicious client or an attacker with a targeted RPC request to view the information that is part of the disclosed path.
References: https://ubuntu.com/security/CVE-2023-34968, https://www.samba.org/samba/security/CVE-2023-34968.html, https://ubuntu.com/security/notices/USN-6238-1, https://www.cve.org/CVERecord?id=CVE-2023-34968
Affected packages
Package
Name: samba
Purl: pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.14.04.20+esm15?arch=source&distro=esm-infra-legacy/trusty
Affected ranges
Type: ECOSYSTEM
Events:
