Zum Inhalt springen.
Sympa Menü

it-securitynotifies - [IT-SecNots] [SECURITY] [DSA 2450-1] samba security update

it-securitynotifies AT lists.piratenpartei.de

Betreff: Sicherheitsankündigungen

Listenarchiv

[IT-SecNots] [SECURITY] [DSA 2450-1] samba security update


Chronologisch Thread 
  • From: Thijs Kinkhorst <thijs AT debian.org>
  • To: debian-security-announce AT lists.debian.org
  • Subject: [IT-SecNots] [SECURITY] [DSA 2450-1] samba security update
  • Date: Thu, 12 Apr 2012 22:29:01 +0200 (CEST)
  • List-archive: <https://service.piratenpartei.de/pipermail/it-securitynotifies>
  • List-id: Sicherheitsankündigungen <it-securitynotifies.lists.piratenpartei.de>
  • Old-return-path: <thijs AT kinkhorst.com>
  • Priority: urgent
  • Resent-date: Thu, 12 Apr 2012 20:30:03 +0000 (UTC)
  • Resent-from: debian-security-announce AT lists.debian.org
  • Resent-message-id: <MJt5swf_0EL.A.lZF.LtzhPB@liszt>
  • Resent-sender: debian-security-announce-request AT lists.debian.org

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -------------------------------------------------------------------------
Debian Security Advisory DSA-2450-1 security AT debian.org
http://www.debian.org/security/ Thijs Kinkhorst
April 12, 2012 http://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : samba
Vulnerability : privilege escalation
Problem type : remote
Debian-specific: no
CVE ID : CVE-2012-1182
Debian Bug : 668309

It was discovered that Samba, the SMB/CIFS file, print, and login server,
contained a flaw in the remote procedure call (RPC) code which allowed
remote code execution as the super user from an unauthenticated
connection.

For the stable distribution (squeeze), this problem has been fixed in
version 2:3.5.6~dfsg-3squeeze7.

For the testing distribution (wheezy), this problem will be fixed soon.

For the unstable distribution (sid), this problem has been fixed in
version 2:3.6.4-1.

We recommend that you upgrade your samba packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: http://www.debian.org/security/

Mailing list: debian-security-announce AT lists.debian.org
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)

iQEcBAEBAgAGBQJPhzVlAAoJEOxfUAG2iX57T1EIAJ230mSOLfaEWx4v4PCj9XZw
Q0taVCU5zIHaQH8engWvvlY+2FAcmgKX+1mycSJwB8OSNtRyhyoXZ5+BlcoQt5dW
pJOo/CJwTpSOjJ0SQDw4H7cvmq8eqKPLegC+PbSbIWJUktd+EgTIHNLIXqcn5LK4
cXdz87QDP5zY002XXHCpDaTjbQCTtiGy0aT9QMmbZeyovJSP+t24v3sAi5juM+qA
pnTMsrDCjVaLN6DgyFAXhaaZTpzE1R8IoKs5P+nbhPrf9WpDgmj3WpKx9d7TA01V
ZU6lFplQWTGOWOJjrfjK2abLoGluO7MWqj7zAoYrR4ZKodKuM1OL9EGHHt9DjA4=
=bYaf
-----END PGP SIGNATURE-----


--
To UNSUBSCRIBE, email to debian-security-announce-REQUEST AT lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmaster AT lists.debian.org
Archive: 20120412202901.2EF935A309 AT kinkhorst.com">http://lists.debian.org/20120412202901.2EF935A309 AT kinkhorst.com




  • [IT-SecNots] [SECURITY] [DSA 2450-1] samba security update, Thijs Kinkhorst, 12.04.2012

Archiv bereitgestellt durch MHonArc 2.6.19.

Seitenanfang