Jump to content
Compatible Support Forums
Sign in to follow this  
news

[security-announce] SUSE-SU-2012:0338-1: critical: Security update for Samba

Recommended Posts

SUSE Security Update: Security update for Samba

______________________________________________________________________________

 

Announcement ID: SUSE-SU-2012:0338-1

Rating: critical

References: #747934

Cross-References: CVE-2012-0870

Affected Products:

SUSE CORE 9

______________________________________________________________________________

 

An update that fixes one vulnerability is now available.

 

Description:

 

 

This update of Samba fixes a heap-based buffer overflow

that could be exploited by remote, unauthenticated

attackers to crash the smbd daemon or potentially execute

arbitrary code via specially crafted SMB AndX request

packets (CVE-2012-0870).

 

Security Issue reference:

 

* CVE-2012-0870

 

 

 

 

Package List:

 

- SUSE CORE 9 (i586 s390 s390x x86_64):

 

libsmbclient-3.0.26a-0.21

libsmbclient-devel-3.0.26a-0.21

samba-3.0.26a-0.21

samba-client-3.0.26a-0.21

samba-doc-3.0.26a-0.21

samba-pdb-3.0.26a-0.21

samba-python-3.0.26a-0.21

samba-vscan-0.3.6b-0.49

samba-winbind-3.0.26a-0.21

 

- SUSE CORE 9 (x86_64):

 

libsmbclient-32bit-9-201202240204

samba-32bit-9-201202240204

samba-client-32bit-9-201202240204

samba-winbind-32bit-9-201202240204

 

- SUSE CORE 9 (s390x):

 

libsmbclient-32bit-9-201202240207

samba-32bit-9-201202240207

samba-client-32bit-9-201202240207

samba-winbind-32bit-9-201202240207

 

 

References:

 

http://support.novell.com/security/cve/CVE-2012-0870.html

https://bugzilla.novell.com/747934

http://download.novell.com/patch/finder/?keywords=77fff45aa383e336358627a07aac4417

 

--

To unsubscribe, e-mail: opensuse-security-announce+unsubscribe ( -at -) opensuse.org

For additional commands, e-mail: opensuse-security-announce+help ( -at -) opensuse.org

 

 

 

Share this post


Link to post

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
Sign in to follow this  

×