The acl_group_override function in smbd/posix_acls.c in smbd in Samba 3.0.x before 3.0.35, 3.1.x and 3.2.x before 3.2.13, and 3.3.x before 3.3.6, when dos filemode is enabled, allows remote attackers to modify access control lists for files via vectors related to read access to uninitialized memory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Samba | Samba | 3.0.31 (including) | 3.0.35 (including) |
Samba | Samba | 3.2.0 (including) | 3.2.13 (excluding) |
Samba | Samba | 3.3.0 (including) | 3.3.6 (excluding) |
Red Hat Enterprise Linux 4 | RedHat | samba-0:3.0.33-0.18.el4_8 | * |
Red Hat Enterprise Linux 5 | RedHat | samba-0:3.0.33-3.15.el5_4 | * |
Supplementary for Red Hat Enterprise Linux 5 | RedHat | samba3x-0:3.3.8-0.46.el5 | * |
Samba | Ubuntu | intrepid | * |
Samba | Ubuntu | jaunty | * |
Samba | Ubuntu | upstream | * |