samba vulnerability

Related Vulnerabilities: CVE-2013-0454  

Samba would allow unintended write access to files over the network.

It was discovered that Samba incorrectly handled CIFS share attributes when SMB2 was used. A remote authenticated user could possibly gain write access to certain shares, bypassing the intended permissions.

16 April 2013

samba vulnerability

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 12.04 LTS

Summary

Samba would allow unintended write access to files over the network.

Software Description

  • samba - SMB/CIFS file, print, and login server for Unix

Details

It was discovered that Samba incorrectly handled CIFS share attributes when SMB2 was used. A remote authenticated user could possibly gain write access to certain shares, bypassing the intended permissions.

Update instructions

The problem can be corrected by updating your system to the following package versions:

Ubuntu 12.04 LTS
samba - 2:3.6.3-2ubuntu2.6

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

In general, a standard system update will make all the necessary changes.

References