cbcvebase.
CVE-2020-14318
published 2020-12-03

CVE-2020-14318: A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and…

medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
A flaw was found in the way samba handled file and directory permissions. An authenticated user could use this flaw to gain access to certain file and directory information which otherwise would be unavailable to the attacker.

Affected

20 ranges
VendorProductVersion rangeFixed in
debiansamba< samba 2:4.13.2+dfsg-2 (bookworm)samba 2:4.13.2+dfsg-2 (bookworm)
msrcazl3_samba_4.18.3-1_on_azure_linux_3.0
msrcazure_linux_3.0_arm
msrcazure_linux_3.0_x64
msrccbl2_samba_4.12.5-6_on_cbl_mariner_2.0
redhatenterprise_linux
redhatenterprise_linux
redhatstorage
sambasamba
sambasamba>= 0 < 2:4.13.2+dfsg-22:4.13.2+dfsg-2
sambasamba>= 0 < 2:4.13.2+dfsg-22:4.13.2+dfsg-2
sambasamba>= 0 < 2:4.13.2+dfsg-22:4.13.2+dfsg-2
sambasamba>= 0 < 2:4.13.2+dfsg-22:4.13.2+dfsg-2
sambasamba>= 0 < 2:4.3.11+dfsg-0ubuntu0.16.04.322:4.3.11+dfsg-0ubuntu0.16.04.32
sambasamba>= 0 < 2:4.7.6+dfsg~ubuntu-0ubuntu2.212:4.7.6+dfsg~ubuntu-0ubuntu2.21
sambasamba>= 0 < 2:4.11.6+dfsg-0ubuntu1.62:4.11.6+dfsg-0ubuntu1.6
sambasamba>= 0 < 2:4.3.11+dfsg-0ubuntu0.14.04.20+esm112:4.3.11+dfsg-0ubuntu0.14.04.20+esm11
sambasamba>= 3.6.0 < 4.11.154.11.15
sambasamba>= 4.12.0 < 4.12.94.12.9
sambasamba>= 4.13.0 < 4.13.14.13.1

CVSS provenance

nvdv3.14.3MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
osv4.3MEDIUM