You are here
Home > Preporuke > Ranjivost programskog paketa samba

Ranjivost programskog paketa samba

  • Detalji os-a: LUB
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-2156-1
March 26, 2014

samba vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 13.10
– Ubuntu 12.10
– Ubuntu 12.04 LTS
– Ubuntu 10.04 LTS

Summary:

Samba did not properly enforce the password guessing protection mechanism.

Software Description:
– samba: SMB/CIFS file, print, and login server for Unix

Details:

Andrew Bartlett discovered that Samba did not properly enforce the
password guessing protection mechanism for all interfaces. A remote
attacker could use this issue to possibly attempt to brute force user
passwords.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 13.10:
samba 2:3.6.18-1ubuntu3.2

Ubuntu 12.10:
samba 2:3.6.6-3ubuntu5.4

Ubuntu 12.04 LTS:
samba 2:3.6.3-2ubuntu2.10

Ubuntu 10.04 LTS:
samba 2:3.4.7~dfsg-1ubuntu3.14

In general, a standard system update will make all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-2156-1
CVE-2013-4496

Package Information:
https://launchpad.net/ubuntu/+source/samba/2:3.6.18-1ubuntu3.2
https://launchpad.net/ubuntu/+source/samba/2:3.6.6-3ubuntu5.4
https://launchpad.net/ubuntu/+source/samba/2:3.6.3-2ubuntu2.10
https://launchpad.net/ubuntu/+source/samba/2:3.4.7~dfsg-1ubuntu3.14

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1
Comment: Using GnuPG with Thunderbird – http://www.enigmail.net/
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=XQnt
—–END PGP SIGNATURE—–

AutorTomislav Protega
Cert idNCERT-REF-2014-03-0023-ADV
CveCVE-2013-4496
ID izvornikaUSN-2156-1
Proizvodsamba
Izvorhttp://www.ubuntu.com
Top
More in Preporuke
Nadogradnja za Firefox

Izdana je nadogradnja za otklanjanje višestrukih ranjivosti u firefoxu za openSUSE. Otkrivene ranjivosti u raznim dijelovima firefoxa mogle su biti...

Close