CVE-2013-4475
13.11.2013, 15:55
Samba 3.2.x through 3.6.x before 3.6.20, 4.0.x before 4.0.11, and 4.1.x before 4.1.1, when vfs_streams_depot or vfs_streams_xattr is enabled, allows remote attackers to bypass intended file restrictions by leveraging ACL differences between a file and an associated alternate data stream (ADS).Enginsight
Vendor | Product | Version |
---|---|---|
samba | samba | 3.2.0 ≤ 𝑥 < 3.6.20 |
samba | samba | 4.0.0 ≤ 𝑥 < 4.0.11 |
samba | samba | 4.1.0 |
debian | debian_linux | 6.0 |
debian | debian_linux | 7.0 |
canonical | ubuntu_linux | 10.04 |
canonical | ubuntu_linux | 12.04 |
canonical | ubuntu_linux | 12.10 |
canonical | ubuntu_linux | 13.04 |
canonical | ubuntu_linux | 13.10 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
samba |
| ||||||||||||||||||||||||
samba4 |
|
Common Weakness Enumeration
References