CVE-2009-1888
The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors…
Does this matter?
Lower severity and a low EPSS score (4.61%). Track it; it rarely justifies an emergency change on its own.
Description
The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors related to read access to uninitialized memory.
- CVSS 2.0
- 5.8 MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
- EPSS
- 4.61% probability · 91th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-264
- Affected
- samba/samba · debian/debian linux · canonical/ubuntu linux
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/35539Third Party Advisory
- http://secunia.com/advisories/35573Third Party Advisory
- http://secunia.com/advisories/35606Third Party Advisory
- http://secunia.com/advisories/36918Third Party Advisory
- http://wiki.rpath.com/Advisories:rPSA-2009-0145Third Party Advisory
- http://www.debian.org/security/2009/dsa-1823Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:196Third Party Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.0.34-CVE-2009-1888.patchExploit, Patch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.2.12-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.3.5-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/security/CVE-2009-1888.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/archive/1/507856/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/35472Exploit, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1022442Third Party Advisory, VDB Entry
- http://www.slackware.com/security/viewer.php?l=slackware-security&y=2009&m=slackware-security.521591Third Party Advisory
- http://www.ubuntu.com/usn/USN-839-1Third Party Advisory
- http://www.vupen.com/english/advisories/2009/1664Permissions Required, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51327Third Party Advisory, VDB Entry
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10790Third Party Advisory
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7292Third Party Advisory
- http://secunia.com/advisories/35539Third Party Advisory
- http://secunia.com/advisories/35573Third Party Advisory
- http://secunia.com/advisories/35606Third Party Advisory
- http://secunia.com/advisories/36918Third Party Advisory
- http://wiki.rpath.com/Advisories:rPSA-2009-0145Third Party Advisory
- http://www.debian.org/security/2009/dsa-1823Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:196Third Party Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.0.34-CVE-2009-1888.patchExploit, Patch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.2.12-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.3.5-CVE-2009-1888.patchPatch, Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.