drucken bookmarks versenden konfigurieren admin pdf Sicherheit: Mangelnde Rechteprüfung in Samba
Name: |
Mangelnde Rechteprüfung in Samba |
|
ID: |
USN-1802-1 |
|
Distribution: |
Ubuntu |
|
Plattformen: |
Ubuntu 12.04 LTS |
|
Datum: |
Mi, 17. April 2013, 07:26 |
|
Referenzen: |
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0454 |
|
Applikationen: |
Samba |
|
Originalnachricht |
This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --===============1830999318024814816== Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="------------enig69B54E5DCA0A00F732AD4A89"
This is an OpenPGP/MIME signed message (RFC 2440 and 3156) --------------enig69B54E5DCA0A00F732AD4A89 Content-Type: text/plain; charset=ISO-8859- Content-Transfer-Encoding: quoted-printable
========================================================================== Ubuntu Security Notice USN-1802-1 April 16, 2013
samba vulnerability ==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 12.04 LTS
Summary:
Samba would allow unintended write access to files over the network.
Software Description: - samba: SMB/CIFS file, print, and login server for Unix
Details:
It was discovered that Samba incorrectly handled CIFS share attributes when SMB2 was used. A remote authenticated user could possibly gain write access to certain shares, bypassing the intended permissions.
Update instructions:
The problem can be corrected by updating your system to the following package versions:
Ubuntu 12.04 LTS: samba 2:3.6.3-2ubuntu2.6
In general, a standard system update will make all the necessary changes.
References: http://www.ubuntu.com/usn/usn-1802-1 CVE-2013-0454
Package Information: https://launchpad.net/ubuntu/+source/samba/2:3.6.3-2ubuntu2.6
--------------enig69B54E5DCA0A00F732AD4A89 Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc"
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.12 (GNU/Linux) Comment: Using GnuPG with undefined - http://www.enigmail.net/
iQIcBAEBCgAGBQJRbYbGAAoJEGVp2FWnRL6Tti8P/3uynUEDDnthO8AwlSitJ/9i i93tMAkR7g/+nbN0eIbCIjuRV+GYv8WGuuMbQ8mHFY8K9uWBHWJksX875oB2oIBK t1/dNuqxwE5sbktUkFUaN42GQNyDqvWtjJlvHhw5OOFAogC7NP1fwXwcJD+GtA1N U5rKbVIlapC8M2FAYDwb8yiL1+6347cIxANamvlFWerpH/xOMO+9DwpWGvCRkClX LV+TllrpPrrVTC6+U4Gkzuhb1EV0QjAARntV0X1p4JpgfwLiCuNRt1WCkmIG5aK2 6TOiKwJRbzcyDQSBtgf9pssGnuhayEGyzdET68RLkJvTHeDyobK/OzRaA4/64efi FC09LrPbslXNVcaJWhZk/K+IiHKtiEK/Dq3l1XK6Oob/Ibzs5gjj8ayf0T4Gjaup KjxdUqbXXbozz4Aovh8ENWIy1WwDw+YP5UkVqcuEJct92Vl+cpR0aQXpO8xIL2dr /ofmCaaiV4+a1wsI7pcPzDZPUjEVPhiVKcxfgo3iv85g9+18lxbdSmaTYjf6E6GI plSv9xXP+lhUryw4PXul3Qa6V0iM98IrfjpfrhMisIm8AWwv9Fv2FVBflW/nft0o fmtOqR7PUq7Szk6zEog+9S9RPQNnn3YeaqXE5/SSmGMCsNCTVuJEaCLPgh3X4aA9 W3C0YSUdA70fY3vux1mt =TTyO -----END PGP SIGNATURE-----
--------------enig69B54E5DCA0A00F732AD4A89--
--===============1830999318024814816== Content-Type: text/plain; charset="us-ascii" MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Disposition: inline
-- ubuntu-security-announce mailing list ubuntu-security-announce@lists.ubuntu.com Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
--===============1830999318024814816==--
|
|
|
|