7.2

CVE-2004-0186

Exploit
smbmnt in Samba 2.x and 3.x on Linux 2.6, when installed setuid, allows local users to gain root privileges by mounting a Samba share that contains a setuid root program, whose setuid attributes are not cleared when the share is mounted.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Samba ≫ Samba Version 2.0
Samba ≫ Samba Version 3.0.0
Linux ≫ Linux Kernel Version 2.6.0
Linux ≫ Linux Kernel Version 2.6.0 Update test1
Linux ≫ Linux Kernel Version 2.6.0 Update test10
Linux ≫ Linux Kernel Version 2.6.0 Update test11
Linux ≫ Linux Kernel Version 2.6.0 Update test2
Linux ≫ Linux Kernel Version 2.6.0 Update test3
Linux ≫ Linux Kernel Version 2.6.0 Update test4
Linux ≫ Linux Kernel Version 2.6.0 Update test5
Linux ≫ Linux Kernel Version 2.6.0 Update test6
Linux ≫ Linux Kernel Version 2.6.0 Update test7
Linux ≫ Linux Kernel Version 2.6.0 Update test8
Linux ≫ Linux Kernel Version 2.6.0 Update test9
Linux ≫ Linux Kernel Version 2.6.1 Update rc1
Linux ≫ Linux Kernel Version 2.6.1 Update rc2
Linux ≫ Linux Kernel Version 2.6_test9_cvs
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.6% 0.725
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://marc.info/?l=bugtraq&m=107636290906296&w=2
http://marc.info/?l=bugtraq&m=107657505718743&w=2
http://www.debian.org/security/2004/dsa-463
Patch
Vendor Advisory
http://www.osvdb.org/3916
http://www.securityfocus.com/bid/9619
Patch
Vendor Advisory
Exploit
https://exchange.xforce.ibmcloud.com/vulnerabilities/15131