The winbindd daemon in Samba 3.0.21 to 3.0.21c writes the machine trust account password in cleartext in log files, which allows local users to obtain the password and spoof the server in the domain.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2006-03-30T17:00:00
Updated: 2024-08-07T16:56:15.500Z
Reserved: 2006-03-07T00:00:00
Link: CVE-2006-1059
Vulnrichment
No data.
NVD
Status : Modified
Published: 2006-03-30T17:06:00.000
Modified: 2024-11-21T00:07:58.933
Link: CVE-2006-1059
Redhat
No data.