CVE-2009-1888
Last modified
CVE-2009-1888 is a vulnerability of currently unknown severity. The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors related to read access to uninitialized memory.. EPSS estimates a 4.61% chance of exploitation in the next 30 days.
Description
The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors related to read access to uninitialized memory.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Samba | Samba | >= 3.0.31, <= 3.0.35 |
| Samba | Samba | >= 3.2.0, < 3.2.13 |
| Samba | Samba | >= 3.3.0, < 3.3.6 |
| Debian | Debian Linux | 4.0 |
| Debian | Debian Linux | 5.0 |
| Canonical | Ubuntu Linux | 6.06 |
| Canonical | Ubuntu Linux | 8.04 |
| Canonical | Ubuntu Linux | 8.10 |
| Canonical | Ubuntu Linux | 9.04 |
References
- http://secunia.com/advisories/35539Third Party Advisory
- http://secunia.com/advisories/35573Third Party Advisory
- http://secunia.com/advisories/35606Third Party Advisory
- http://secunia.com/advisories/36918Third Party Advisory
- http://wiki.rpath.com/Advisories:rPSA-2009-0145Third Party Advisory
- http://www.debian.org/security/2009/dsa-1823Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:196Third Party Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.0.34-CVE-2009-1888.patchExploit, Patch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.2.12-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.3.5-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/security/CVE-2009-1888.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/archive/1/507856/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/35472Exploit, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1022442Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-839-1Third Party Advisory
- http://www.vupen.com/english/advisories/2009/1664Permissions Required, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51327Third Party Advisory, VDB Entry
- http://secunia.com/advisories/35539Third Party Advisory
- http://secunia.com/advisories/35573Third Party Advisory
- http://secunia.com/advisories/35606Third Party Advisory
- http://secunia.com/advisories/36918Third Party Advisory
- http://wiki.rpath.com/Advisories:rPSA-2009-0145Third Party Advisory
- http://www.debian.org/security/2009/dsa-1823Third Party Advisory
- http://www.mandriva.com/security/advisories?name=MDVSA-2009:196Third Party Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.0.34-CVE-2009-1888.patchExploit, Patch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.2.12-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/ftp/patches/security/samba-3.3.5-CVE-2009-1888.patchPatch, Vendor Advisory
- http://www.samba.org/samba/security/CVE-2009-1888.htmlPatch, Vendor Advisory
- http://www.securityfocus.com/archive/1/507856/100/0/threadedThird Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/35472Exploit, Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id?1022442Third Party Advisory, VDB Entry
- http://www.ubuntu.com/usn/USN-839-1Third Party Advisory
- http://www.vupen.com/english/advisories/2009/1664Permissions Required, Third Party Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51327Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2009-1888?
How severe is CVE-2009-1888?
How do I fix CVE-2009-1888?
Are you affected by CVE-2009-1888?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
