Login
Newsletter
Werbung

Sicherheit: Denial of Service in Samba (Aktualisierung)
Aktuelle Meldungen Distributionen
Name: Denial of Service in Samba (Aktualisierung)
ID: USN-4341-2
Distribution: Ubuntu
Plattformen: Ubuntu 14.04 ESM
Datum: Do, 30. April 2020, 07:21
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-10704
Applikationen: Samba
Update von: Zwei Probleme in Samba

Originalnachricht


--===============8747102912594485738==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="5I6of5zJg18YgZEa"
Content-Disposition: inline


--5I6of5zJg18YgZEa
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

==========================================================================
Ubuntu Security Notice USN-4341-2
April 29, 2020

samba vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 14.04 ESM

Summary:

Samba could be made to consume resources if it received a specially
crafted LDAP query.

Software Description:
- samba: SMB/CIFS file, print, and login server for Unix

Details:

USN-4341-1 fixed a vulnerability in Samba. This update provides
the corresponding update for Ubuntu 14.04 ESM.

Original advisory details:

It was discovered that Samba incorrectly handled certain LDAP queries. A
remote attacker could possibly use this issue to cause Samba to consume
resources, resulting in a denial of service. (CVE-2020-10704)

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 14.04 ESM:
samba 2:4.3.11+dfsg-0ubuntu0.14.04.20+esm6

In general, a standard system update will make all the necessary changes.

References:
https://usn.ubuntu.com/4341-2
https://usn.ubuntu.com/4341-1
CVE-2020-10704

--5I6of5zJg18YgZEa
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=PEmQ
-----END PGP SIGNATURE-----

--5I6of5zJg18YgZEa--


--===============8747102912594485738==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung