A flaw was found in the way samba implemented an RPC endpoint emulating the Windows registry service API. An unprivileged attacker could use this flaw to create a new registry hive file anywhere they have unix permissions which could lead to creation of a new file in the Samba share. Versions before 4.8.11, 4.9.6 and 4.10.2 are vulnerable.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-libs": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "registry-tools": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbsharemodes0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-doc": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbsharemodes0": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "python-samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbsharemodes-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbsharemodes-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "python-samba": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libpam-smbpass-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-common": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "smbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "samba-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.14.04.20", "libpam-smbpass": "2:4.3.11+dfsg-0ubuntu0.14.04.20" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.19", "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.19" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "libwbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-libs": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "registry-tools": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-common-bin": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libwbclient0-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-dsdb-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libpam-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libnss-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-vfs-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "python-samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-common-bin-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-testsuite": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "smbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libsmbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libwbclient0": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libsmbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "python-samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-dsdb-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "registry-tools-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-vfs-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "ctdb": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libnss-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libsmbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-libs-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-testsuite-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-common": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libpam-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "smbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "samba-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "libparse-pidl-perl": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9", "ctdb-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.9" } ] }