Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 492
Alerts This Week
Warning Icon 1 492

Gentoo: GLSA-200511-15 High: Smb4k Local Unauthorized File Access

gentoo
Calendar Grey November 18, 2005
Scroller Gentoo
Critical alert for Gentoo: Smb4k presents a vulnerability enabling unintended file access. It is advised to apply the latest updates promptly.
A vulnerability has been identified that allows unauthorized access to the contents of /etc/sudoers and /etc/super.tab files.

Summary

Gentoo Linux Security Advisory GLSA 200511-15 https://security.gentoo.org/ Severity: High Title: Smb4k: Local unauthorized file access Date: November 18, 2005 Bugs: #111089 ID: 200511-15

Synopsis ======= A vulnerability has been identified that allows unauthorized access to the contents of /etc/sudoers and /etc/super.tab files.
Background ========= Smb4K is a SMB/CIFS share browser for KDE.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 net-misc/smb4k < 0.6.4 >= 0.6.4
========== A vulnerability leading to unauthorized file access has been found. A pre-existing symlink from /tmp/sudoers and /tmp/super.tab to a textfile will cause Smb4k to write the co...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround