PT-2007-3740 · Apple+1 · Macos X+1
Published
2007-08-03
·
Updated
2017-07-29
·
CVE-2007-2407
CVSS v2.0
4.0
Medium
| Vector | AV:N/AC:L/Au:S/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Samba versions on Apple Mac OS X 10.3.9 and 10.4.10
Description
The issue concerns the Samba server on Apple Mac OS X, specifically when Windows file sharing is enabled. It does not enforce disk quotas after dropping privileges, allowing remote authenticated users to exceed their allocated disk space.
Recommendations
For Apple Mac OS X 10.3.9, consider disabling Windows file sharing until a fix is available.
For Apple Mac OS X 10.4.10, restrict access to the Samba server to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Macos X
Samba