Vulnerability CVE-2013-6442: Information

Description

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.

Severity: MEDIUM (5.8)

Published: March 14, 2014
Modified: Jan. 7, 2017
Error type identifier: CWE-264

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
sambasisyphus4.1.6-alt14.19.6-alt1ALT-PU-2014-1308-1116540Fixed
sambap104.1.6-alt14.19.6-alt1ALT-PU-2014-1308-1116540Fixed
sambap94.1.6-alt14.14.10-alt2ALT-PU-2014-1308-1116540Fixed
sambac10f14.1.6-alt14.16.11-alt2ALT-PU-2014-1308-1116540Fixed
sambac9f24.1.6-alt14.14.14-alt0.c9.1ALT-PU-2014-1308-1116540Fixed
sambac74.0.16-alt0.M70P.14.6.15-alt1.M70C.1ALT-PU-2014-1479-1118317Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:samba:samba:4.1.5:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.1.4:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.1.0:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.1.2:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.1.3:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.1.1:*:*:*:*:*:*:*

      Configuration 2

      cpe:2.3:a:samba:samba:4.0.14:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.2:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.11:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.3:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.13:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.6:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.10:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.7:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.1:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.8:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.0:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.5:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.12:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.4:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.15:*:*:*:*:*:*:*

      cpe:2.3:a:samba:samba:4.0.9:*:*:*:*:*:*:*