Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-4138

Опубликовано: 14 сент. 2007
Источник: nvd
CVSS2: 6.9
EPSS Низкий

Описание

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:samba:samba:3.0.25:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:3.0.25a:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:3.0.25b:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:3.0.25c:*:*:*:*:*:*:*

EPSS

Процентиль: 33%
0.00128
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
почти 18 лет назад

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.

redhat
почти 18 лет назад

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.

debian
почти 18 лет назад

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in ...

github
около 3 лет назад

The Winbind nss_info extension (nsswitch/idmap_ad.c) in idmap_ad.so in Samba 3.0.25 through 3.0.25c, when the "winbind nss info" option is set to rfc2307 or sfu, grants all local users the privileges of gid 0 when the (1) RFC2307 or (2) Services for UNIX (SFU) primary group attribute is not defined.

oracle-oval
больше 17 лет назад

ELSA-2007-1017: Critical: samba security update (CRITICAL)

EPSS

Процентиль: 33%
0.00128
Низкий

6.9 Medium

CVSS2

Дефекты

CWE-264