Lucene search

K
ubuntuUbuntuUSN-1434-1
HistoryMay 01, 2012 - 12:00 a.m.

Samba vulnerability

2012-05-0100:00:00
ubuntu.com
36

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.004

Percentile

73.3%

Releases

  • Ubuntu 12.04
  • Ubuntu 11.10
  • Ubuntu 11.04
  • Ubuntu 10.04

Packages

  • samba - SMB/CIFS file, print, and login server for Unix

Details

Ivano Cristofolini discovered that Samba incorrectly handled some Local
Security Authority (LSA) remote procedure calls (RPC). A remote, authenticated
attacker could exploit this to grant administrative privileges to arbitrary
users. The administrative privileges could be used to bypass permission checks
performed by the Samba server.

OSVersionArchitecturePackageVersionFilename
Ubuntu12.04noarchsamba< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibpam-smbpass< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibpam-winbind< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibsmbclient< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibsmbclient-dev< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibwbclient-dev< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchlibwbclient0< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchsamba-common-bin< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchsamba-dbg< 2:3.6.3-2ubuntu2.1UNKNOWN
Ubuntu12.04noarchsamba-tools< 2:3.6.3-2ubuntu2.1UNKNOWN
Rows per page:
1-10 of 481

CVSS2

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:S/C:P/I:P/A:P

AI Score

6.4

Confidence

Low

EPSS

0.004

Percentile

73.3%