cvelist/2019/14xxx/CVE-2019-14902.json

128 lines
4.8 KiB
JSON
Raw Normal View History

2020-01-21 13:19:13 +01:00
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2019-14902",
2020-01-21 18:01:14 +00:00
"ASSIGNER": "secalert@redhat.com",
"STATE": "PUBLIC"
2020-01-21 13:19:13 +01:00
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "[UNKNOWN]",
"product": {
"product_data": [
{
"product_name": "samba",
"version": {
"version_data": [
{
"version_value": "all samba 4.11.x versions before 4.11.5"
},
{
"version_value": "all samba 4.10.x versions before 4.10.12"
},
{
"version_value": "all samba 4.9.x versions before 4.9.18"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "CWE-284"
}
]
}
]
},
"references": {
"reference_data": [
{
2020-01-21 18:01:14 +00:00
"url": "https://www.samba.org/samba/security/CVE-2019-14902.html",
"refsource": "MISC",
"name": "https://www.samba.org/samba/security/CVE-2019-14902.html"
2020-01-21 13:19:13 +01:00
},
{
"url": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14902",
"name": "https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2019-14902",
"refsource": "CONFIRM"
2020-01-22 11:01:07 +00:00
},
{
"refsource": "CONFIRM",
"name": "https://security.netapp.com/advisory/ntap-20200122-0001/",
"url": "https://security.netapp.com/advisory/ntap-20200122-0001/"
2020-01-22 14:01:07 +00:00
},
{
"refsource": "CONFIRM",
"name": "https://www.synology.com/security/advisory/Synology_SA_20_01",
"url": "https://www.synology.com/security/advisory/Synology_SA_20_01"
2020-01-27 18:01:22 +00:00
},
{
"refsource": "UBUNTU",
"name": "USN-4244-1",
"url": "https://usn.ubuntu.com/4244-1/"
2020-01-29 07:01:19 +00:00
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2020:0122",
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00055.html"
2020-02-02 04:01:06 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2020-6bd386c7eb",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GQ6U65I2K23YJC4FESW477WL55TU3PPT/"
2020-02-08 04:01:09 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2020-f92cd0e72b",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/4ACZVNMIFQGGXNJPMHAVBN3H2U65FXQY/"
2020-03-25 19:01:50 +00:00
},
{
"refsource": "GENTOO",
"name": "GLSA-202003-52",
"url": "https://security.gentoo.org/glsa/202003-52"
2021-05-29 13:00:46 +00:00
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20210529 [SECURITY] [DLA 2668-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2021/05/msg00023.html"
2023-09-14 17:00:34 +00:00
},
{
"refsource": "MLIST",
"name": "[debian-lts-announce] 20230914 [SECURITY] [DLA 3563-1] samba security update",
"url": "https://lists.debian.org/debian-lts-announce/2023/09/msg00013.html"
2020-01-21 13:19:13 +01:00
}
]
},
"description": {
"description_data": [
{
"lang": "eng",
"value": "There is an issue in all samba 4.11.x versions before 4.11.5, all samba 4.10.x versions before 4.10.12 and all samba 4.9.x versions before 4.9.18, where the removal of the right to create or modify a subtree would not automatically be taken away on all domain controllers."
}
]
},
"impact": {
"cvss": [
[
{
"vectorString": "5.4/CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N",
"version": "3.0"
}
]
]
}
2020-01-21 18:01:14 +00:00
}