CVE-2007-2444Improper Privilege Management in Samba

Severity
7.2HIGHNVD
EPSS
1.3%
top 20.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 14
Latest updateMay 1

Description

Logic error in the SID/Name translation functionality in smbd in Samba 3.0.23d through 3.0.25pre2 allows local users to gain temporary privileges and execute SMB/CIFS protocol operations via unspecified vectors that cause the daemon to transition to the root user.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages3 packages

debiandebian/samba< samba 3.0.25-1 (bookworm)
Debiansamba/samba< 3.0.25-1+3
NVDsamba/samba3.0.23d, 3.0.24, 3.0.25+2

Also affects: Debian Linux 4.0, 5.0, Ubuntu Linux 6.06, 6.10, 7.04

Patches

🔴Vulnerability Details

2
GHSA
GHSA-h25h-f75q-43qp: Logic error in the SID/Name translation functionality in smbd in Samba 32022-05-01
OSV
CVE-2007-2444: Logic error in the SID/Name translation functionality in smbd in Samba 32007-05-14

📋Vendor Advisories

4
Ubuntu
Samba regression2007-05-22
Ubuntu
Samba vulnerabilities2007-05-16
Debian
CVE-2007-2444: samba - Logic error in the SID/Name translation functionality in smbd in Samba 3.0.23d t...2007
Red Hat
CVE-2007-2444: Logic error in the SID/Name translation functionality in smbd in Samba 3