[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248038

 
 

909

 
 

194772

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

USN-702-1 -- samba vulnerability

ID: oval:org.secpod.oval:def:700451Date: (C)2011-05-13   (M)2022-11-07
Class: PATCHFamily: unix




Gunter Höckel discovered that Samba with registry shares enabled did not properly validate share names. An authenticated user could gain access to the root filesystem by using an older version of smbclient and specifying an empty string as a share name. This is only an issue if registry shares are enabled on the server by setting "registry shares = yes", "include = registry", or "config backend = registry", which is not the default.

Platform:
Ubuntu 8.10
Product:
samba
Reference:
USN-702-1
CVE-2009-0022
CVE    1
CVE-2009-0022
CPE    1
cpe:/o:ubuntu:ubuntu_linux:8.10

© SecPod Technologies