Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2019-3870


A vulnerability was found in Samba from version (including) 4.9 to versions before 4.9.6 and 4.10.2. During the creation of a new Samba AD DC, files are created in a private subdirectory of the install location. This directory is typically mode 0700, that is owner (root) only access. However in some upgraded installations it will have other permissions, such as 0755, because this was the default before Samba 4.8. Within this directory, files are created with mode 0666, which is world-writable, including a sample krb5.conf, and the list of DNS names and servicePrincipalName values to update.


Published

2019-04-09T16:29:01.867

Last Modified

2025-01-14T19:29:55.853

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.1 (MEDIUM)

CVSSv2 Vector

AV:L/AC:L/Au:N/C:N/I:P/A:P

  • Access Vector: LOCAL
  • Access Complexity: LOW
  • Authentication: NONE
  • Confidentiality Impact: NONE
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

3.9

Impact Score

4.9

Weaknesses
  • Type: Secondary
    CWE-276
  • Type: Primary
    CWE-276

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application samba samba < 4.9.6 Yes
Application samba samba < 4.10.2 Yes
Operating System fedoraproject fedora 29 Yes
Operating System fedoraproject fedora 30 Yes
Application synology directory_server - Yes
Application synology router_manager 1.2 Yes
Operating System synology diskstation_manager 5.2 Yes
Operating System synology diskstation_manager 6.1 Yes
Operating System synology diskstation_manager 6.2 Yes
Operating System synology skynas_firmware - Yes
Hardware synology skynas - No
Operating System synology vs960hd_firmware < 2.3.6-1720 Yes
Hardware synology vs960hd - No

References