Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-6442

Опубликовано: 14 мар. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8

Описание

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.

РелизСтатусПримечание
devel

released

2:4.1.3+dfsg-2ubuntu4
esm-infra-legacy/trusty

not-affected

2:4.1.3+dfsg-2ubuntu4
esm-infra/xenial

not-affected

2:4.1.3+dfsg-2ubuntu4
lucid

not-affected

precise

not-affected

precise/esm

not-affected

quantal

not-affected

saucy

not-affected

trusty

released

2:4.1.3+dfsg-2ubuntu4
trusty/esm

not-affected

2:4.1.3+dfsg-2ubuntu4

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

ignored

end of life
saucy

ignored

end of life
trusty

DNE

trusty/esm

DNE

upstream

released

4.0.16, 4.1.6

Показывать по

EPSS

Процентиль: 78%
0.0119
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.

nvd
больше 11 лет назад

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.

debian
больше 11 лет назад

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before ...

github
около 3 лет назад

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.

CVSS3: 6.1
fstec
больше 11 лет назад

Уязвимость программного обеспечения Samba, позволяющая удаленному злоумышленнику нарушить конфиденциальность и целостность защищаемой информации

EPSS

Процентиль: 78%
0.0119
Низкий

5.8 Medium

CVSS2