Gentoo Archives: gentoo-security

From: Marc Ballarin <Ballarin.Marc@×××.de>
To: gentoo-security@l.g.o
Subject: [gentoo-security] Additional vulnerability in SAMBA <=3.0.7
Date: Mon, 15 Nov 2004 10:14:18
Message-Id: 20041115111453.40422736.Ballarin.Marc@gmx.de
1 Hi,
2 it seems, that samba <=3.0.7 contains an additional, more severe
3 vulnerability besides the DoS described in
4 http://www.gentoo.org/security/en/glsa/glsa-200411-21.xml
5
6 According to
7 http://security.e-matters.de/advisories/132004.html ,
8 samba <=3.0.7 contains a vulnerabilty, that allows remote code injection
9 and execution.
10 This has been fixed in samba 3.0.8 as well, but no advisory has been
11 released, since the samba developers believed the bug to be
12 non-exploitable.
13
14 Marc
15
16 --
17 gentoo-security@g.o mailing list

Replies

Subject Author
Re: [gentoo-security] Additional vulnerability in SAMBA <=3.0.7 Sune Kloppenborg Jeppesen <jaervosz@g.o>