CVE-2010-0787

medium
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

client/mount.cifs.c in mount.cifs in smbfs in Samba 3.0.22, 3.0.28a, 3.2.3, 3.3.2, 3.4.0, and 3.4.5 allows local users to mount a CIFS share on an arbitrary mountpoint, and gain privileges, via a symlink attack on the mountpoint directory file.

References

http://git.samba.org/?p=samba.git;a=commit;h=3ae5dac462c4ed0fb2cd94553583c56fce2f9d80

http://git.samba.org/?p=samba.git;a=commit;h=a0c31ec1c8d1220a5884e40d9ba6b191a04a24d5

http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034444.html

http://lists.fedoraproject.org/pipermail/package-announce/2010-January/034470.html

http://lists.opensuse.org/opensuse-security-announce/2010-08/msg00001.html

http://secunia.com/advisories/38286

http://secunia.com/advisories/38308

http://secunia.com/advisories/38357

http://security.gentoo.org/glsa/glsa-201206-29.xml

http://www.mandriva.com/security/advisories?name=MDVSA-2010:090

http://www.securityfocus.com/bid/37992

http://www.securityfocus.com/bid/39898

http://www.ubuntu.com/usn/USN-893-1

http://www.vupen.com/english/advisories/2010/1062

https://bugzilla.redhat.com/show_bug.cgi?id=532940

https://bugzilla.redhat.com/show_bug.cgi?id=558833

https://bugzilla.samba.org/show_bug.cgi?id=6853

https://exchange.xforce.ibmcloud.com/vulnerabilities/55944

Details

Source: MITRE

Published: 2010-03-02

Updated: 2017-08-17

Type: CWE-59

Risk Information

CVSS v2

Base Score: 4.4

Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 3.4

Severity: MEDIUM

Tenable Plugins

View all (19 total)

IDNameProductFamilySeverity
89105VMware ESX / ESXi Service Console and Third-Party Libraries Multiple Vulnerabilities (VMSA-2012-0001) (remote check)NessusMisc.
high
68335Oracle Linux 4 / 5 : samba (ELSA-2011-1219)NessusOracle Linux Local Security Checks
medium
61123Scientific Linux Security Update : samba on SL4.x, SL5.x i386/x86_64NessusScientific Linux Local Security Checks
medium
59702GLSA-201206-29 : mount-cifs: Multiple vulnerabilitesNessusGentoo Local Security Checks
medium
57749VMSA-2012-0001 : VMware ESXi and ESX updates to third-party library and ESX Service ConsoleNessusVMware ESX Local Security Checks
high
55999RHEL 4 / 5 : samba (RHSA-2011:1219)NessusRed Hat Local Security Checks
medium
55997CentOS 4 / 5 : samba (CESA-2011:1219)NessusCentOS Local Security Checks
medium
50894SuSE 11 Security Update : (SAT Patch Number 2544)NessusSuSE Local Security Checks
high
49835SuSE 10 Security Update : Samba (ZYPP Patch Number 7072)NessusSuSE Local Security Checks
high
49248Fedora 12 : samba-3.4.9-60.fc12 (2010-14678)NessusFedora Local Security Checks
high
47572openSUSE Security Update : cifs-mount (openSUSE-SU-2010:0346-1)NessusSuSE Local Security Checks
high
47570openSUSE Security Update : cifs-mount (openSUSE-SU-2010:0346-1)NessusSuSE Local Security Checks
high
47334Fedora 11 : samba-3.4.7-0.50.fc11 (2010-4050)NessusFedora Local Security Checks
medium
47333Fedora 12 : samba-3.4.7-58.fc12 (2010-3999)NessusFedora Local Security Checks
medium
47241Fedora 12 : samba-3.4.5-55.fc12 (2010-1218)NessusFedora Local Security Checks
medium
47239Fedora 11 : samba-3.4.5-0.47.fc11 (2010-1190)NessusFedora Local Security Checks
medium
46227Mandriva Linux Security Advisory : samba (MDVSA-2010:090-1)NessusMandriva Local Security Checks
medium
44950Debian DSA-2004-1 : samba - several vulnerabilitiesNessusDebian Local Security Checks
medium
44336Ubuntu 6.06 LTS / 8.04 LTS / 8.10 / 9.04 / 9.10 : samba vulnerability (USN-893-1)NessusUbuntu Local Security Checks
medium