Oval Definition:oval:com.ubuntu.precise:def:20122111000
Revision Date:2012-04-30Version:1
Title:CVE-2012-2111 on Ubuntu 12.04 LTS (precise) - medium.
Description:The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2012-2111
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'samba' package in precise was vulnerable but has been fixed (note: '2:3.6.3-2ubuntu2.1').
  • BACK