LWN.net Logo

samba: remotely-exploitable buffer overrun

Package(s):samba CVE #(s):CAN-2003-0201 CAN-2003-0196
Created:April 7, 2003 Updated:May 2, 2003
Description: Digital Defense Inc. has sent out an advisory describing another remotely-exploitable buffer overrun in the Samba server; all versions through 2.2.8 or 2.0.10 (or Samba-TNG 0.3.2) are vulnerable. The Samba team has released Samba 2.2.8a with a fix for the problem; there is also a patch available for the 2.0 series. An exploit is said to be circulating already, so applying patches quickly would be a good idea.
Alerts:
SCO Group CSSA-2003-017.0 2002-03-05
Yellow Dog YDU-20030409-3 2003-04-09
Red Hat RHSA-2003:137-02 2003-04-09
Gentoo 200304-02 2003-04-09
Conectiva CLA-2003:624 2003-04-08
Slackware sl-1049831915 2003-04-08
Sorcerer SORCERER2003-04-08 2003-04-08
Trustix 2003-0019 2003-04-07
Red Hat RHSA-2003:137-01 2003-04-08
SuSE SuSE-SA:2003:025 2003-04-07
Immunix IMNX-2003-7+-006-01 2003-04-07
Debian DSA-280-1 2003-04-07
Mandrake MDKSA-2003:044 2003-04-07
OpenPKG OpenPKG-SA-2003.028 2003-04-07

(Log in to post comments)

Copyright © 2012, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds