CVE-2019-14902

Source
https://cve.org/CVERecord?id=CVE-2019-14902
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-14902.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2019-14902
Downstream
Related
Published
2020-01-21T18:15:12.653Z
Modified
2026-02-03T07:03:55.213887Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N CVSS Calculator
Summary
[none]
Details

There is an issue in all samba 4.11.x versions before 4.11.5, all samba 4.10.x versions before 4.10.12 and all samba 4.9.x versions before 4.9.18, where the removal of the right to create or modify a subtree would not automatically be taken away on all domain controllers.

References

Affected packages

Git / github.com/samba-team/samba

Affected versions

ldb-1.*
ldb-1.5.5
ldb-1.5.6
ldb-2.*
ldb-2.0.8
samba-4.*
samba-4.10.0
samba-4.10.1
samba-4.10.10
samba-4.10.11
samba-4.10.2
samba-4.10.3
samba-4.10.4
samba-4.10.5
samba-4.10.6
samba-4.10.7
samba-4.10.8
samba-4.10.9
samba-4.11.0
samba-4.11.1
samba-4.11.2
samba-4.11.3
samba-4.11.4

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2019-14902.json"