Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Samba Multiple Unspecified Remote Buffer Overflow Vulnerabilities

Solution:
Samba 2.2.8a has been released which addresses these issues. Samba is currently developing patches which will specifically address the problems in version 2.2.7a and 2.0.10. Users are advised to upgrade as soon as possible.

Slackware has released a security advisory (2003-04-08) containing fixes which address this issue.

Debian has released a security advisory (DSA 280-1) containing fixes which address this issue.

OpenPKG has released a security advisory (OpenPKG-SA-2003.028) containing fixes which address this issue.

Mandrake has released a security advisory (MDKSA-2003:044) containing fixes which address this issue.

FreeBSD has released a security note (FreeBSD-SN-03:01) which contains updated ports information. Further information can be found in the attached advisory.

Immunix has released a security advisory (IMNX-2003-7+-006-01) which contains fixes which address this issue for Samba 2.0.10. Users are advised to upgrade as soon as possible.

Red Hat has revised its advisory (RHSA-2003:137-02). See referenced advisory for new fix details.

Gentoo Linux has released an advisory. Users who have installed net-fs/samba are advised to upgrade to samba-2.2.8a by issuing the following commands:

emerge sync
emerge samba
emerge clean

HP has released an advisory HPSBUX0304-254. HP has stated that new smbd binaries (smbd.11.00.r1.gz) are available at the following locations. Further information is available in the referenced advisory:

ftp://samba:samba@hprc.external.hp.com/
ftp://samba:samba@192.170.19.51/
ftp hprc.external.hp.com

Veritas has determined that various ServPoint NAS releases are affected by this vulnerability. Patches are currently being developed. Users are advised to contact the vendor for further information regarding how to obtain fixes.


Samba Samba 2.0.10

Samba Samba 2.0.7

Samba Samba 2.2 .0

Samba Samba 2.2 .0a

Samba Samba 2.2.1 a

Samba Samba 2.2.2

Samba Samba 2.2.3 a

Samba Samba 2.2.3 a

Samba Samba 2.2.3

Samba Samba 2.2.4

Samba Samba 2.2.5

Samba Samba 2.2.5

Samba Samba 2.2.6

Samba Samba 2.2.7 a

Samba Samba 2.2.7

Samba Samba 2.2.8







 

Privacy Statement
Copyright 2008, SecurityFocus