Alerts This Week
Warning Icon 1 914
Alerts This Week
Warning Icon 1 914

Gentoo: GLSA-200404-21 Important: Samba Local Root Privilege Escalation

gentoo
Calendar Grey April 29, 2004
Dist Gentoo Esm H88
The GLSA issued by Gentoo Linux in April 2004, specifically GLSA 200404-21, underscores severe vulnerabilities in Samba that enable local users to gain root privileges and modify files.
There is a bug in smbfs which may allow local users to gain root via a setuid file on a mounted Samba share

Summary

Gentoo Linux Security Advisory GLSA 200404-21 https://security.gentoo.org/ Severity: Normal Title: Multiple Vulnerabilities in Samba Date: April 29, 2004 Bugs: #41800, #45965 ID: 200404-21

Synopsis ======= There is a bug in smbfs which may allow local users to gain root via a setuid file on a mounted Samba share. Also, there is a tmpfile symlink vulnerability in the smbprint script distributed with Samba.
Background ========= Samba is a package which allows UNIX systems to act as file servers for Windows computers. It also allows UNIX systems to mount shares exported by a Samba/CIFS/Windows server. smbmount is a program in the Samba package which allows normal users on a UNIX system to mount remote shares. smbprint is an example script included in the Samba package which can be used to facilitate network printing.
Affected packages ================ -----------------------------------...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Severity
important
Lowest
Low
Medium
High
Critical

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround

Your message here