|
Family: Debian Local Security Checks --> Category: infos
[DSA1257] DSA-1257-1 samba Vulnerability Scan
Vulnerability Scan Summary DSA-1257-1 samba
Detailed Explanation for this Vulnerability Test
Several remote vulnerabilities have been discovered in samba, a free
implementation of the SMB/CIFS protocol, which may lead to the execution
of arbitrary code or denial of service. The Common Vulnerabilities and
Exposures project identifies the following problems:
It was discovered that incorrect handling of deferred file open calls
may lead to an infinite loop, which results in denial of service.
"zybadawg333" discovered that the AFS ACL mapping VFS test performs
insecure format string handling, which may lead to the execution of
arbitrary code.
For the stable distribution (sarge) these problems have been fixed in
version 3.0.14a-3sarge4.
For the upcoming stable distribution (etch) these problems have been
fixed in version 3.0.23d-5.
For the unstable distribution (sid) these problems have been fixed in
version 3.0.23d-5.
We recommend that you upgrade your samba package.
Solution : http://www.debian.org/security/2007/dsa-1257
Threat Level: High
Click HERE for more information and discussions on this network vulnerability scan.
|