CVE-2001-1162

Directory traversal vulnerability in the %m macro in the smb.conf configuration file in Samba before 2.2.0a allows remote attackers to overwrite certain files via a .. in a NETBIOS name, which is used as the name for a .log file.
References
Link Resource
ftp://patches.sgi.com/support/free/security/advisories/20011002-01-P
http://ciac.llnl.gov/ciac/bulletins/l-105.shtml
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000405
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-027-01
http://us1.samba.org/samba/whatsnew/macroexploit.html
http://www.calderasystems.com/support/security/advisories/CSSA-2001-024.0.txt
http://www.debian.org/security/2001/dsa-065
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-062.php3
http://www.redhat.com/support/errata/RHSA-2001-086.html
http://www.securityfocus.com/advisories/3423
http://www.securityfocus.com/archive/1/193027 Exploit Patch Vendor Advisory
http://www.securityfocus.com/bid/2928 Exploit Patch Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/6731
ftp://patches.sgi.com/support/free/security/advisories/20011002-01-P
http://ciac.llnl.gov/ciac/bulletins/l-105.shtml
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000405
http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-027-01
http://us1.samba.org/samba/whatsnew/macroexploit.html
http://www.calderasystems.com/support/security/advisories/CSSA-2001-024.0.txt
http://www.debian.org/security/2001/dsa-065
http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-062.php3
http://www.redhat.com/support/errata/RHSA-2001-086.html
http://www.securityfocus.com/advisories/3423
http://www.securityfocus.com/archive/1/193027 Exploit Patch Vendor Advisory
http://www.securityfocus.com/bid/2928 Exploit Patch Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/6731
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:samba:samba:2.0.5:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.7:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.8:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.0.9:*:*:*:*:*:*:*
cpe:2.3:a:samba:samba:2.2.0:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:a:hp:cifs-9000_server:a.01.05:*:*:*:*:*:*:*
cpe:2.3:a:hp:cifs-9000_server:a.01.06:*:*:*:*:*:*:*

History

20 Nov 2024, 23:37

Type Values Removed Values Added
References () ftp://patches.sgi.com/support/free/security/advisories/20011002-01-P - () ftp://patches.sgi.com/support/free/security/advisories/20011002-01-P -
References () http://ciac.llnl.gov/ciac/bulletins/l-105.shtml - () http://ciac.llnl.gov/ciac/bulletins/l-105.shtml -
References () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000405 - () http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000405 -
References () http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-027-01 - () http://download.immunix.org/ImmunixOS/7.0/updates/IMNX-2001-70-027-01 -
References () http://us1.samba.org/samba/whatsnew/macroexploit.html - () http://us1.samba.org/samba/whatsnew/macroexploit.html -
References () http://www.calderasystems.com/support/security/advisories/CSSA-2001-024.0.txt - () http://www.calderasystems.com/support/security/advisories/CSSA-2001-024.0.txt -
References () http://www.debian.org/security/2001/dsa-065 - () http://www.debian.org/security/2001/dsa-065 -
References () http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-062.php3 - () http://www.linux-mandrake.com/en/security/2001/MDKSA-2001-062.php3 -
References () http://www.redhat.com/support/errata/RHSA-2001-086.html - () http://www.redhat.com/support/errata/RHSA-2001-086.html -
References () http://www.securityfocus.com/advisories/3423 - () http://www.securityfocus.com/advisories/3423 -
References () http://www.securityfocus.com/archive/1/193027 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/archive/1/193027 - Exploit, Patch, Vendor Advisory
References () http://www.securityfocus.com/bid/2928 - Exploit, Patch, Vendor Advisory () http://www.securityfocus.com/bid/2928 - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/6731 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/6731 -

Information

Published : 2001-06-23 04:00

Updated : 2024-11-20 23:37


NVD link : CVE-2001-1162

Mitre link : CVE-2001-1162

CVE.ORG link : CVE-2001-1162


JSON object : View

Products Affected

hp

  • cifs-9000_server

samba

  • samba