CVE-2021-20316 : samba - symlink race condition
Versions Affected : All versions prior to TrueNAS Core 13.0.
Versions Not Affected : TrueNAS SCALE is not vulnerable.
All versions of Samba prior to 4.15.0 are vulnerable to a malicious client using an SMB1 or NFS symlink race to allow filesystem metadata to be accessed in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.