[Pkg-samba-maint] Bug#496073: Bug#496073: samba: group_mapping.ldb created world writeable after manual deletion

Julien Cristau jcristau at debian.org
Tue Aug 26 14:18:22 UTC 2008


On Fri, Aug 22, 2008 at 15:54:21 +0200, Sascha Herrmann wrote:

> After removing the group_mapping.tdb file in /var/lib/samba, samba recreates
> this file with the permissions set to 0666, allowing everybody with access
> to the system to modify this file. I think this isn't a good idea. I removed
> this file on a system I cloned from a working system because I wanted to be
> sure there are no cached informations of the domain the original system was
> a member of.
> 
This has been assigned CVE-2008-3789, FWIW.

Cheers,
Julien





More information about the Pkg-samba-maint mailing list