CVE-2010-0833
published 2010-07-28CVE-2010-0833: The pam_lsass library in Likewise Open 5.4 and CIFS 5.4 before build 8046, and 6.0 before build 8234, as used in HP StorageWorks X9000 Network Storage Systems…
PriorityP356critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.14%
89.8th percentile
The pam_lsass library in Likewise Open 5.4 and CIFS 5.4 before build 8046, and 6.0 before build 8234, as used in HP StorageWorks X9000 Network Storage Systems and possibly other products, uses "SetPassword logic" when running as part of a root service, which allows remote attackers to bypass authentication for a Likewise Security Authority (lsassd) account whose password is marked as expired.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| likewise | likewise_cifs | — | — |
| likewise | likewise_open | — | — |
| likewise | likewise_open | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Likewise Open vulnerability
vendor_ubuntu·2010-07-26
CVE-2010-0833 Likewise Open vulnerability
Title: Likewise Open vulnerability
Summary: Local login restrictions could be bypassed.
Matt Weatherford discovered that Likewise Open did not correctly check
password expiration for the local-provider account. A local attacker could
exploit this to log into a system they would otherwise not have access to.
Instructions: In general, a standard system update will make all the necessary changes.
GHSA
GHSA-9p5c-9rhf-4q9x: The pam_lsass library in Likewise Open 5
ghsa_unreviewed·2022-05-02
CVE-2010-0833 [HIGH] CWE-287 GHSA-9p5c-9rhf-4q9x: The pam_lsass library in Likewise Open 5
The pam_lsass library in Likewise Open 5.4 and CIFS 5.4 before build 8046, and 6.0 before build 8234, as used in HP StorageWorks X9000 Network Storage Systems and possibly other products, uses "SetPassword logic" when running as part of a root service, which allows remote attackers to bypass authentication for a Likewise Security Authority (lsassd) account whose password is marked as expired.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=129719002806096&w=2http://secunia.com/advisories/40725http://secunia.com/advisories/40736http://secunia.com/advisories/43244http://www.likewise.com/community/index.php/forums/viewthread/772/http://www.securityfocus.com/archive/1/512643/100/0/threadedhttp://www.securitytracker.com/id?1025031http://www.ubuntu.com/usn/USN-964-1http://www.vupen.com/english/advisories/2010/1913http://www.vupen.com/english/advisories/2011/0312http://marc.info/?l=bugtraq&m=129719002806096&w=2http://secunia.com/advisories/40725http://secunia.com/advisories/40736http://secunia.com/advisories/43244http://www.likewise.com/community/index.php/forums/viewthread/772/http://www.securityfocus.com/archive/1/512643/100/0/threadedhttp://www.securitytracker.com/id?1025031http://www.ubuntu.com/usn/USN-964-1http://www.vupen.com/english/advisories/2010/1913http://www.vupen.com/english/advisories/2011/0312
2010-07-28
Published