Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Red Hat Local Security Checks >> RHSA-2003-096: samba


Vulnerability Assessment Details

RHSA-2003-096: samba

Vulnerability Assessment Summary
Check for the version of the samba packages

Detailed Explanation for this Vulnerability Assessment


Updated Samba packages are now available to fix security vulnerabilities
found during a code audit.

Samba is a suite of utilities which provides file and printer sharing
services to SMB/CIFS clients.

Sebastian Krahmer discovered a security vulnerability present
in unpatched versions of Samba prior to 2.2.8. An anonymous user could use
the vulnerability to gain root access on the target machine.

Additionally, a race condition could permit a possible hacker to overwrite
critical system files.

All users of Samba are advised to update to the erratum packages which
contain patches to correct these vulnerabilities.

These packages contain the security fixes backported to the Samba 2.2.7
codebase.




Solution : http://rhn.redhat.com/errata/RHSA-2003-096.html
Network Security Threat Level: High

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

Netgear Prosafe M4100-26-POE FSM7226P L2+ 48-Port PoE Managed Switch Rack Ears
$299.95
Netgear Prosafe M4100-26-POE FSM7226P L2+ 48-Port PoE Managed Switch Rack Ears pictureCisco 5-Port switch SF100D-05
$10.0
Cisco 5-Port switch SF100D-05 pictureNetgear Prosafe GS748T V4 Gigabit Smart 48-Port Switch NO RACK EARS LOT D
$119.95
Netgear Prosafe GS748T V4 Gigabit Smart 48-Port Switch NO RACK EARS LOT D pictureWS-C2960-48PST-L - Cisco Catalyst 2960 48-Port 10/100 PoE Managed Switch w/ Ears
$75.0
WS-C2960-48PST-L - Cisco Catalyst 2960 48-Port 10/100 PoE Managed Switch w/ Ears picture


Discussions

No Discussions have been posted on this vulnerability.