CVE 7.3 HIGH

Local users can perform a local root exploit via smb4k mounthelper_CVE-2025-66003

7.3 / 10
HIGH
CVSS:4.0/AV:L/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Description

An External Control of File Name or Path vulnerability in smb4k allowsl ocal users to perform a local root exploit via smb4k mounthelper if they can access and control the contents of a Samba shareThis issue affects smb4k: from ? before 4.0.5.

Basic Information

ID CVE-2025-66003
Source suse
Published Jan 8, 2026 at 14:58
Modified Jan 8, 2026 at 15:43

Affected Product

Vendor https://github.com/KDE/
Product smb4k
Version ?
Affected Versions https://github.com/KDE/ smb4k ?

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.