Permissions, Privileges, and Access Controls in Samba - CVE-2013-6442

 

Permissions, Privileges, and Access Controls in Samba - CVE-2013-6442

Published: March 14, 2014 / Updated: July 28, 2020


Vulnerability identifier: #VU32566
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2013-6442
CWE-ID: CWE-264
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

The owner_set function in smbcacls.c in smbcacls in Samba 4.0.x before 4.0.16 and 4.1.x before 4.1.6 removes an ACL during use of a --chown or --chgrp option, which allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging an unintended administrative change.


Affected software

Samba
samba (Alpine package)
Slackware Linux

How to mitigate CVE-2013-6442

Install update from vendor's website.

Samba - update to 4.0.16
samba (Alpine package) - update to 4.1.3-r1

External References

Related Security Bulletins