Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-8143
Description:Samba 4.0.x before 4.0.24, 4.1.x before 4.1.16, and 4.2.x before 4.2rc4, when an Active Directory Domain Controller (AD DC) is configured, allows remote authenticated users to set the LDB userAccountControl UF_SERVER_TRUST_ACCOUNT bit, and consequently gain privileges, by leveraging delegation of authority for user-account or computer-account creation.
Test IDs: 1.3.6.1.4.1.25623.1.0.842061   1.3.6.1.4.1.25623.1.0.117771   1.3.6.1.4.1.25623.1.1.13.2015.020.01  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-8143
BugTraq ID: 72278
http://www.securityfocus.com/bid/72278
http://www.securitytracker.com/id/1031615
http://secunia.com/advisories/62594
http://www.slackware.com/security/viewer.php?l=slackware-security&y=2015&m=slackware-security.416326
SuSE Security Announcement: openSUSE-SU-2015:0375 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00031.html
SuSE Security Announcement: openSUSE-SU-2016:1064 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-04/msg00042.html
http://www.ubuntu.com/usn/USN-2481-1
XForce ISS Database: samba-cve20148143-priv-esc(100596)
https://exchange.xforce.ibmcloud.com/vulnerabilities/100596




© 1998-2025 E-Soft Inc. All rights reserved.