Ask the Community
Groups
CVE-2017-9461 samba: fd_open_atomic infinite loop due to wrong handling of dangling symlinks - Connect IT Community | Kaseya
<main> <article class="userContent"> <h3 data-id="cve-id"><strong>CVE ID</strong></h3> <p>CVE-2017-9461</p> <h3 data-id="description"><strong>DESCRIPTION</strong></h3> <p>A flaw was found in the way Samba handled dangling symlinks. An authenticated malicious Samba client could use this flaw to cause the smbd daemon to enter an infinite loop and use an excessive amount of CPU and memory.</p> <h3 data-id="resolution"><strong>RESOLUTION</strong></h3> <p></p> <ul><li>CentOS6 Unitrends' appliances (physical and/or virtual) are not affected.</li> <li>CentOS7 Unitrends' appliances (physical and/or virtual) are not affected.</li> </ul><h3 data-id="link-to-advisories"><strong>LINK TO ADVISORIES</strong></h3> <p></p> <ul><li><a rel="nofollow" href="/home/leaving?allowTrusted=1&target=https%3A%2F%2Faccess.redhat.com%2Fsecurity%2Fcve%2Fcve-2017-9461">https://access.redhat.com/security/cve/cve-2017-9461</a></li></ul> </article> </main>