[Bug 978458] Re: CVE-2012-1182: "root" credential remote code execution

Tyler Hicks tyhicks at canonical.com
Thu Apr 12 18:33:06 UTC 2012


Here is my proposed debdiff for Precise. I'll need a sponsor for this to
make it into the release.

I've built a package locally with this debdiff. I sanity checked it
using the 'umt compare-log', 'umt compare-bin', and 'umt check' tools. I
tested it with the reproducers from ZDI, as well as test-samba.py in the
qa-regression-testing project. The reproducers were mitigated with the
update and tset-samba.py passed successfully.

** Patch added: "samba_3.6.3-2ubuntu2.debdiff"
   https://bugs.launchpad.net/ubuntu/+source/samba/+bug/978458/+attachment/3054702/+files/samba_3.6.3-2ubuntu2.debdiff

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/978458

Title:
  CVE-2012-1182: "root" credential remote code execution

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/978458/+subscriptions



More information about the Ubuntu-server-bugs mailing list