Samba Auth Metadata Flaw Enables Out-of-Share Modify (CVE-2021-20316)
CVE-2021-20316 Published on August 23, 2022

A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.

Vendor Advisory NVD

Weakness Type

What is a Race Condition Vulnerability?

The program contains a code sequence that can run concurrently with other code, and the code sequence requires temporary, exclusive access to a shared resource, but a timing window exists in which the shared resource can be modified by another code sequence that is operating concurrently.

CVE-2021-20316 has been classified to as a Race Condition vulnerability or weakness.


Products Associated with CVE-2021-20316

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2021-20316 are published in these products:

 
 
 
 
 
 
 

Exploit Probability

EPSS
0.66%
Percentile
70.77%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.