There is an issue in all samba 4.11.x versions before 4.11.5, all samba 4.10.x versions before 4.10.12 and all samba 4.9.x versions before 4.9.18, where the removal of the right to create or modify a subtree would not automatically be taken away on all domain controllers.
References
Link | Resource |
---|---|
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00055.html | Third Party Advisory |
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14902 | Issue Tracking Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2021/05/msg00023.html | Third Party Advisory |
https://lists.debian.org/debian-lts-announce/2023/09/msg00013.html | |
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4ACZVNMIFQGGXNJPMHAVBN3H2U65FXQY/ | |
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/GQ6U65I2K23YJC4FESW477WL55TU3PPT/ | |
https://security.gentoo.org/glsa/202003-52 | Third Party Advisory |
https://security.netapp.com/advisory/ntap-20200122-0001/ | Third Party Advisory |
https://usn.ubuntu.com/4244-1/ | Third Party Advisory |
https://www.samba.org/samba/security/CVE-2019-14902.html | Mailing List Vendor Advisory |
https://www.synology.com/security/advisory/Synology_SA_20_01 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2020-01-21T00:00:00
Updated: 2023-09-14T16:06:21.444367
Reserved: 2019-08-10T00:00:00
Link: CVE-2019-14902
JSON object: View
NVD Information
Status : Modified
Published: 2020-01-21T18:15:12.653
Modified: 2023-11-07T03:05:21.817
Link: CVE-2019-14902
JSON object: View
Redhat Information
No data.