Duplicate SMB file_ids leading to Windows client cache poisoning

Andrew Walker awalker at ixsystems.com
Fri Dec 10 11:49:33 UTC 2021


On Thu, Dec 9, 2021 at 11:44 PM Ralph Boehme <slow at samba.org> wrote:

> On 12/9/21 22:14, Tom Talpey wrote:
> > The SMB2_FILEID is a 2-part structure, 64 bits for each handle (id):
> >
> https://docs.microsoft.com/en-us/openspecs/windows_protocols/ms-smb2/f1d9b40d-e335-45fc-9d0b-199a31ede4c3
>
> oh, we're not discussing that one. This one:
>
> MS-FSCC 2.1.9 64-bit file ID
>
> -slow
>
> --
> Ralph Boehme, Samba Team                 https://samba.org/
> SerNet Samba Team Lead      https://sernet.de/en/team-samba


Ah, right sorry for my part in adding to the confusion. Just for reference
for those of us not 100% familiar with the details:

The change in how file ids were instantiated is based on this discussion:
https://lists.samba.org/archive/samba-technical/2019-June/133825.html

And these two MacOS-related bugs:
https://bugzilla.samba.org/show_bug.cgi?id=13999
https://bugzilla.samba.org/show_bug.cgi?id=12715

Correct?


More information about the samba-technical mailing list