CVE-2020-14318: Red Hat Enterprise Linux
Medium severity, CVSS 4.3. EPSS: 1.5% chance of exploitation in the next 30 days.
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be unavailable to the attacker.
Affected products
- Red Hat Enterprise Linux: version 7.0 only; version 8.0 only
- Red Hat Storage: version 3.0 only
- Samba Samba: from 3.6.0, before 4.11.15 (fixed in 4.11.15); from 4.12.0, before 4.12.9 (fixed in 4.12.9); from 4.13.0, before 4.13.1 (fixed in 4.13.1)
Published 2020-12-03. Last modified 2026-06-17.