← Back

CVE-2004-0186

nvd nist
Published: Mar 15, 2004Modified: Apr 16, 2026

JSON object

Loading...
7.2
Vector
AV:L/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 3.9 / Impact: 10.0
Source: NVD

Description

smbmnt in Samba 2.x and 3.x on Linux 2.6, when installed setuid, allows local users to gain root privileges by mounting a Samba share that contains a setuid root program, whose setuid attributes are not cleared when the share is mounted.

Affected (17)

Products: Samba: Samba · Linux: Linux Kernel
1 product
Samba
1 product
Linux Kernel
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Samba
Version 2.0
Version 3.0.0
Configuration B
15 vulnerable
Vulnerable SoftwareAffected Versions
Linux
Version 2.6.0
Version 2.6.0 test10
Version 2.6.0 test11
Version 2.6.0 test1
Version 2.6.0 test2
Version 2.6.0 test3
Version 2.6.0 test4
Version 2.6.0 test5
Version 2.6.0 test6
Version 2.6.0 test7
Version 2.6.0 test8
Version 2.6.0 test9
Version 2.6.1 rc1
Version 2.6.1 rc2
Version 2.6_test9_cvs

References (12)

Source: cve@mitre.org
PatchVendor Advisory
Source: cve@mitre.org
Source: cve@mitre.org
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.