BetaONE will rise again!


Reply
  #1  
Old 18th Dec 07, 10:59 PM
NewsBot's Avatar
NewsBot NewsBot is offline
Senior Member
 
Join Date: Oct 2004
Posts: 31,118
NewsBot will become famous soon enough
Canonical discloses Samba Vulnerability in Linux
Canonical has disclosed a security vulnerability that affects various versions, including the latest version 7.10, of its Linux distribution, as well as corresponding versions of Kubuntu, Edubuntu, and Xubuntu. The flaw occurs because Samba, an application which provides seamless file and print services to SMB/CIFS clients, does not correctly check the size of reply packets to mailslot requests. It is therefore possible for a remote attacker to execute malicious code by sending a specially crafted domain logon packet, assuming that domain logon is enabled on the server. Thankfully, it is disabled by default in Ubuntu and upgrading libsmbclient as well as samba to the latest versions for the OS fixes the issue.

Update: Several members have noted in the comments that this is, in fact, not a vulnerability limited to Ubuntu, but is a problem with samba itself. We recommend keeping up to date, no matter what distribution you are using.

Read full story...



More...
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Canonical discloses Samba Vulnerability in Ubuntu NewsBot NeoWin News 0 18th Dec 07 09:45 PM
Canonical discloses Ubuntu Vulnerability in Samba NewsBot NeoWin News 0 18th Dec 07 08:45 PM
Review: Shift Linux 0.5 (RC2) - Neowin's Linux NewsBot NeoWin News 0 29th Sep 07 12:31 PM
Nero Linux 3 Brings Blu-ray & HD DVD Data Burning to Linux NewsBot NeoWin News 0 25th May 07 09:27 PM
Distrowatch - Linux Guide felixml Alternative OS Support 0 5th Mar 02 02:17 PM


All times are GMT +1. The time now is 06:13 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.