[Bug 980758] [NEW] new buffer overflow attack on samba 3.6.3 -> enables unauthenticated remote root access

Sean DS 980758 at bugs.launchpad.net
Fri Apr 13 12:11:05 UTC 2012


Public bug reported:

binary hint: samba

references:

[1] http://www.darkreading.com/vulnerability-
management/167901026/security/application-security/232900170/linux-
users-beware-patch-new-samba-flaw-immediately.html

[2] http://blog.spiderlabs.com/2012/04/rce-root-in-all-current-samba-
versions.html

[3] https://www.samba.org/samba/security/CVE-2012-1182

A fix has been released and a patch is available, we should definately
get this fix into the LTS, as so many people use samba.

** Affects: samba (Ubuntu)
     Importance: Undecided
         Status: Invalid


** Tags: buffer critical overflow root samba security vulnerability

** Visibility changed to: Public

** Summary changed:

- new buffer overflow attack on samba 3.6.3 -> enables remote root access
+ new buffer overflow attack on samba 3.6.3 -> enables unauthenticated remote root access

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/980758

Title:
  new buffer overflow attack on samba 3.6.3 -> enables unauthenticated
  remote root access

Status in “samba” package in Ubuntu:
  Invalid

Bug description:
  binary hint: samba

  references:

  [1] http://www.darkreading.com/vulnerability-
  management/167901026/security/application-security/232900170/linux-
  users-beware-patch-new-samba-flaw-immediately.html

  [2] http://blog.spiderlabs.com/2012/04/rce-root-in-all-current-samba-
  versions.html

  [3] https://www.samba.org/samba/security/CVE-2012-1182

  A fix has been released and a patch is available, we should definately
  get this fix into the LTS, as so many people use samba.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/980758/+subscriptions




More information about the foundations-bugs mailing list