OVH Cloud OVH Cloud

MAJ sécurité SAMBA

1 réponse
Avatar
g2lx
Bonjour,

Suis-je le seul a avoir des problèmes avec SAMBA depuis la MAJ ?
J'ai beaucoup de timeout.

Bonne soirée

===============================================
Mandrakesoft Security
Advisories
Package name samba
Date September 13th, 2004
Advisory ID MDKSA-2004:092
Affected versions 10.0
Synopsis Updated samba packages fix multiple vulnerabilities


Problem Description

Two vulnerabilities were discovered in samba 3.0.x; the first is a defect
in smbd's ASN.1 parsing that allows an attacker to send a specially
crafted packet during the authentication request which will send the newly
spawned smbd process into an infinite loop. As a result, it is possible to
use up all available memory on the server.

The second vulnerability is in nmbd's processing of mailslot packets which
could allow an attacker to anonymously crash nmbd.

The provided packages are patched to protect against these two
vulnerabilities.

===============================================

1 réponse

Avatar
Fluber
g2lx wrote:
Bonjour,

Suis-je le seul a avoir des problèmes avec SAMBA depuis la MAJ ?
J'ai beaucoup de timeout.

Bonne soirée

===============================================
Mandrakesoft Security
Advisories
Package name samba
Date September 13th, 2004
Advisory ID MDKSA-2004:092
Affected versions 10.0
Synopsis Updated samba packages fix multiple vulnerabilities


Problem Description

Two vulnerabilities were discovered in samba 3.0.x; the first is a defect
in smbd's ASN.1 parsing that allows an attacker to send a specially
crafted packet during the authentication request which will send the newly
spawned smbd process into an infinite loop. As a result, it is possible to
use up all available memory on the server.

The second vulnerability is in nmbd's processing of mailslot packets which
could allow an attacker to anonymously crash nmbd.

The provided packages are patched to protect against these two
vulnerabilities.

==============================================



perso j'utilise pas samba je fais du nfs donc je sais pas