[Secure-testing-commits] r21678 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Mar 19 21:33:12 UTC 2013


Author: carnil
Date: 2013-03-19 21:33:12 +0000 (Tue, 19 Mar 2013)
New Revision: 21678

Modified:
   data/CVE/list
Log:
add samba4 CVE-2013-1863

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-03-19 21:14:22 UTC (rev 21677)
+++ data/CVE/list	2013-03-19 21:33:12 UTC (rev 21678)
@@ -1667,8 +1667,11 @@
 	RESERVED
 	NOTE: http://www.openwall.com/lists/oss-security/2013/03/15/6
 	TODO: check
-CVE-2013-1863
+CVE-2013-1863 [AD DC files (initially) created as world-writable if additional CIFS file shares are created on the AD DC]
 	RESERVED
+	- samba4 <not-affected> (Debian package only uses ntvfs, see #679678)
+	NOTE: http://www.samba.org/samba/history/samba-4.0.4.html
+	NOTE: http://www.samba.org/samba/security/CVE-2013-1863
 CVE-2013-1862
 	RESERVED
 CVE-2013-1861 [geometry query crashes mysqld]




More information about the Secure-testing-commits mailing list