[Bug 932239] Re: Multiple Samba security vulnerabilities

Dave Walker davewalker at ubuntu.com
Thu Feb 16 13:27:51 UTC 2012


** This bug has been flagged as a security vulnerability

-- 
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to samba in Ubuntu.
https://bugs.launchpad.net/bugs/932239

Title:
  Multiple Samba security vulnerabilities

Status in “samba” package in Ubuntu:
  New

Bug description:
  Please upgrade Samba to 3.4.14 or later in Manzanita

  High...
  CVE-2010-3069 Samba 3.0.x to 3.5.x are affected by a  buffer overrun vulnerability

  Medium...
  CVE-2011-2522
  CVE-2011-2694
  CVE-2011-0719 Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro
  CVE-2010-1635 
  CVE-2010-1642 sending specially crafted 'Session Setup AndX' requests, an
  unauthenticated, remote attacker can exploit these vulnerabilities

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba/+bug/932239/+subscriptions




More information about the foundations-bugs mailing list