Total vulnerabilities in the database
A flaw was found in the way samba implemented an RPC endpoint emulating the Windows registry service API. An unprivileged attacker could use this flaw to create a new registry hive file anywhere they have unix permissions which could lead to creation of a new file in the Samba share. Versions before 4.8.11, 4.9.6 and 4.10.2 are vulnerable.
Software | From | Fixed in |
---|---|---|
samba / samba | 4.10.0 | 4.10.2 |
samba / samba | 4.9.0 | 4.9.6 |
samba / samba | 3.2.0 | 4.8.11 |
debian / debian_linux | 8.0 | 8.0.x |
redhat / enterprise_linux | 7.0 | 7.0.x |
redhat / gluster_storage | 3.0 | 3.0.x |
fedoraproject / fedora | 28 | 28.x |
fedoraproject / fedora | 29 | 29.x |
fedoraproject / fedora | 30 | 30.x |
opensuse / leap | 42.3 | 42.3.x |