Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-0454

Опубликовано: 26 мар. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4

Описание

The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.4 before 1.4.0.1 and possibly other products, does not properly enforce CIFS share attributes, which allows remote authenticated users to (1) write to a read-only share; (2) trigger data-integrity problems related to the oplock, locking, coherency, or leases attribute; or (3) have an unspecified impact by leveraging incorrect handling of the browseable or "hide unreadable" parameter.

РелизСтатусПримечание
devel

not-affected

2:3.6.9-1ubuntu1
hardy

not-affected

3.0.28a-1ubuntu4.18
lucid

not-affected

2:3.4.7~dfsg-1ubuntu3.10
oneiric

not-affected

2:3.5.11~dfsg-1ubuntu2.3
precise

released

2:3.6.3-2ubuntu2.6
quantal

not-affected

2:3.6.6-3ubuntu5
upstream

released

3.6.6

Показывать по

EPSS

Процентиль: 83%
0.01878
Низкий

4 Medium

CVSS2

Связанные уязвимости

redhat
больше 13 лет назад

The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.4 before 1.4.0.1 and possibly other products, does not properly enforce CIFS share attributes, which allows remote authenticated users to (1) write to a read-only share; (2) trigger data-integrity problems related to the oplock, locking, coherency, or leases attribute; or (3) have an unspecified impact by leveraging incorrect handling of the browseable or "hide unreadable" parameter.

nvd
почти 13 лет назад

The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.4 before 1.4.0.1 and possibly other products, does not properly enforce CIFS share attributes, which allows remote authenticated users to (1) write to a read-only share; (2) trigger data-integrity problems related to the oplock, locking, coherency, or leases attribute; or (3) have an unspecified impact by leveraging incorrect handling of the browseable or "hide unreadable" parameter.

debian
почти 13 лет назад

The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IB ...

github
почти 4 года назад

The SMB2 implementation in Samba 3.6.x before 3.6.6, as used on the IBM Storwize V7000 Unified 1.3 before 1.3.2.3 and 1.4 before 1.4.0.1 and possibly other products, does not properly enforce CIFS share attributes, which allows remote authenticated users to (1) write to a read-only share; (2) trigger data-integrity problems related to the oplock, locking, coherency, or leases attribute; or (3) have an unspecified impact by leveraging incorrect handling of the browseable or "hide unreadable" parameter.

EPSS

Процентиль: 83%
0.01878
Низкий

4 Medium

CVSS2