>> Samba "winbind nss info" Group ID Local Privilege Escalation Vulnerability
Title : Samba "winbind nss info" Group ID Local Privilege Escalation Vulnerability VUPEN ID : VUPEN/ADV-2007-3120 CVE ID : CVE-2007-4138
Rated as : Moderate Risk
Remotely Exploitable : No Locally Exploitable : Yes Release Date : 2007-09-12
Technical Description
A vulnerability has been identified in Samba, which could be exploited by malicious users to bypass security restrictions and obtain elevated privileges. This issue is caused by an error in Winbind that assigns a primary group ID of 0 to the domain user when the rfc2307 or sfu nss_info plugin is enabled and the RFC2307 or SFU (Services for Unix) primary group attribute is not present, which could be exploited by local attackers to gain elevated privileges.