Jump to content

Advisories MDKSA-2007:104: Updated samba packages fix multiple vulnerabilities


Recommended Posts

A number of bugs were discovered in the NDR parsing support in Samba

that is used to decode MS-RPC requests. A remote attacker could

send a carefully crafted request that would cause a heap overflow,

possibly leading to the ability to execute arbitrary code on the server

(CVE-2007-2446).

 

A remote authenticated user could trigger a flaw where unescaped

user input parameters were being passed as arguments to /bin/sh

(CVE-2007-2447).

 

Finally, on Samba 3.0.23d and higher, when Samba translated SID to/from

name using the Samba local list of user and group accounts, a logic

error in smbd's internal security stack could result in a transition

to the root user id rather than the non-root user (CVE-2007-2444).

 

Updated packages have been patched to prevent these issues.

Link to comment
Share on other sites

Guest
This topic is now closed to further replies.
 Share

×
×
  • Create New...