Lucene search

K
cveMitreCVE-2003-0086
HistoryMar 31, 2003 - 5:00 a.m.

CVE-2003-0086

2003-03-3105:00:00
mitre
web.nvd.nist.gov
36
samba
cve-2003-0086
file overwrite
race condition

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:H/Au:N/C:N/I:P/A:N

AI Score

6.2

Confidence

Low

EPSS

0.005

Percentile

76.5%

The code for writing reg files in Samba before 2.2.8 allows local users to overwrite arbitrary files via a race condition involving chown.

Affected configurations

Nvd
Node
sambasambaMatch2.0.0
OR
sambasambaMatch2.0.1
OR
sambasambaMatch2.0.2
OR
sambasambaMatch2.0.3
OR
sambasambaMatch2.0.4
OR
sambasambaMatch2.0.5
OR
sambasambaMatch2.0.6
OR
sambasambaMatch2.0.7
OR
sambasambaMatch2.0.8
OR
sambasambaMatch2.0.9
OR
sambasambaMatch2.0.10
OR
sambasambaMatch2.2.0
OR
sambasambaMatch2.2.0a
OR
sambasambaMatch2.2.1a
OR
sambasambaMatch2.2.2
OR
sambasambaMatch2.2.3
OR
sambasambaMatch2.2.3a
OR
sambasambaMatch2.2.4
OR
sambasambaMatch2.2.5
OR
sambasambaMatch2.2.6
OR
sambasambaMatch2.2.7
OR
sambasambaMatch2.2.7a
VendorProductVersionCPE
sambasamba2.0.0cpe:2.3:a:samba:samba:2.0.0:*:*:*:*:*:*:*
sambasamba2.0.1cpe:2.3:a:samba:samba:2.0.1:*:*:*:*:*:*:*
sambasamba2.0.2cpe:2.3:a:samba:samba:2.0.2:*:*:*:*:*:*:*
sambasamba2.0.3cpe:2.3:a:samba:samba:2.0.3:*:*:*:*:*:*:*
sambasamba2.0.4cpe:2.3:a:samba:samba:2.0.4:*:*:*:*:*:*:*
sambasamba2.0.5cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*
sambasamba2.0.6cpe:2.3:a:samba:samba:2.0.6:*:*:*:*:*:*:*
sambasamba2.0.7cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*
sambasamba2.0.8cpe:2.3:a:samba:samba:2.0.8:*:*:*:*:*:*:*
sambasamba2.0.9cpe:2.3:a:samba:samba:2.0.9:*:*:*:*:*:*:*
Rows per page:
1-10 of 221

CVSS2

1.2

Attack Vector

LOCAL

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:L/AC:H/Au:N/C:N/I:P/A:N

AI Score

6.2

Confidence

Low

EPSS

0.005

Percentile

76.5%