Vulnerability CVE-2023-34968


Published: 2023-07-20

Description:
A path disclosure vulnerability was found in Samba. As part of the Spotlight protocol, Samba discloses the server-side absolute path of shares, files, and directories in the results for search queries. This flaw allows a malicious client or an attacker with a targeted RPC request to view the information that is part of the disclosed path.

 References:
https://www.samba.org/samba/security/CVE-2023-34968.html
https://access.redhat.com/security/cve/CVE-2023-34968
https://bugzilla.redhat.com/show_bug.cgi?id=2222795

Copyright 2026, cxsecurity.com

 

Back to Top