You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa samba

Sigurnosni nedostatak programskog paketa samba

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LUB

==========================================================================
Ubuntu Security Notice USN-2305-1
August 01, 2014

samba vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

– Ubuntu 14.04 LTS

Summary:

Samba could be made to run programs as an administrator if it received
specially crafted network traffic.

Software Description:
– samba: SMB/CIFS file, print, and login server for Unix

Details:

Volker Lendecke discovered that the Samba NetBIOS name service daemon
incorrectly handled certain memory operations. A remote attacker could use
this issue to execute arbitrary code as the root user.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 LTS:
samba 2:4.1.6+dfsg-1ubuntu2.14.04.3

In general, a standard system update will make all the necessary changes.

References:
http://www.ubuntu.com/usn/usn-2305-1
CVE-2014-3560

Package Information:
https://launchpad.net/ubuntu/+source/samba/2:4.1.6+dfsg-1ubuntu2.14.04.3

—–BEGIN PGP SIGNATURE—–
Version: GnuPG v1

iQIcBAEBCgAGBQJT3CbnAAoJEGVp2FWnRL6TW08P/RNIQ+cNjtfUdDDgWyTYuRwM
21Du278heEhP1lJlrFnCiZdhNF1skbXKYrqQl570O17Luooja3e7b62depfmlCnO
BXS/djiixn6/oNZ/li7nyK7FIULwNF8W6W6Oo5Lur5JxIeVVsvcFZGaBjNN3s0Yj
FCWkJTvfdt30pAxg1ZIce1EjJxC3yTNdGOKKvlLvXvJB8dt2NR26if0FSx3Fbm/C
mQPWu56BfIJxWbYtGumht6ySxopRuja8tt3C7SOjPbuV+O/Mo4etzQKYdodriR8F
0uGxrHzFzXaD75KRjkpu+hmijO7tWlK/AwpkQ3wWh7Zi5xWs21bRHiKTp4UhAB6G
3DKVH54Ffs2/WSZbMUHDDnCh6IcAjihV3fDlpf2DNQvtYwyrRJP9gcM90JtoSBTc
zilxfrnDke0ONHo4i8jDmCtcXBrM2kd7iXSSjS3bjLKPNzXXyeMqDmllKqPvEJw5
1sXkbwQyVLiBQzZiYyn9CQkJWGOS6Qb88aD18n2rnJCMa8+/rxJ7yz/fxgwk7VfF
RBszzARdqafETGFF1vWmaE10YtqoPuYvC69j/llwgKw2I6+pA07od+2WEzitOP4f
9eU4VWBU7EV6LWpsTiyZlSXhMzqpgyUcWdNYHLU5SQ4ODw48wBH2WjSyt1oWRVIf
jt9m4UeiObGF2x29rB2R
=U5Fg
—–END PGP SIGNATURE—–

AutorMarijo Plepelic
Cert idNCERT-REF-2014-08-0005-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
Izvorhttp://www.adobe.com/
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa openstack-keystone

Otkriveni su sigurnosni nedostaci u programskom paketu openstack-keystone za Red Hat Enterprise Linux OpenStack Platform. Otkriveni nedostaci potencijalnim napadačima omogućuju...

Close