[Bug 1701073] Re: CVE-2017-2619 regression breaks symlinks to directories
Andreas Hasenack
andreas at canonical.com
Mon Jul 3 20:28:32 UTC 2017
I filed https://bugzilla.samba.org/show_bug.cgi?id=12873 for this
ACCESS_DENIED issue that happens when exporting the root filesystem
("/") and using symlinks, which is what the OP wanted fixed here but we
ended up diving into https://bugzilla.samba.org/show_bug.cgi?id=12860,
which is another valid regression. Maybe we should have another Ubuntu
bug for #12873.
** Bug watch added: Samba Bugzilla #12873
https://bugzilla.samba.org/show_bug.cgi?id=12873
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/1701073
Title:
CVE-2017-2619 regression breaks symlinks to directories
Status in samba:
Unknown
Status in samba package in Ubuntu:
In Progress
Status in samba source package in Xenial:
In Progress
Status in samba source package in Yakkety:
In Progress
Status in samba source package in Zesty:
In Progress
Bug description:
Found in current version in Xenial (4.3.11+dfsg-0ubuntu0.16.04.7).
When share's path is '/', symlinks do not work properly from Windows
client. Gives "Cannot Access" error.
To reproduce:
1. Install samba and related dependencies
apt install -y samba
2. Add a share at the end of the default file that uses '/' as the
path:
[reproducer]
comment = share
browseable = no
writeable = yes
create mode = 0600
directory mode = 0700
path = /
3. Attempt to access a symlink somewhere within the path of the share
with a Windows client.
4. Receive "Windows cannot access..." related error
To manage notifications about this bug go to:
https://bugs.launchpad.net/samba/+bug/1701073/+subscriptions
More information about the foundations-bugs
mailing list