Описание
ELSA-2012-0533: samba and samba3x security update (IMPORTANT)
[3.5.10-116]
- Security Release, fixes CVE-2012-2111
- resolves: #815688
Обновленные пакеты
Oracle Linux 6
Oracle Linux x86_64
libsmbclient
3.5.10-116.el6_2
libsmbclient-devel
3.5.10-116.el6_2
samba
3.5.10-116.el6_2
samba-client
3.5.10-116.el6_2
samba-common
3.5.10-116.el6_2
samba-doc
3.5.10-116.el6_2
samba-domainjoin-gui
3.5.10-116.el6_2
samba-swat
3.5.10-116.el6_2
samba-winbind
3.5.10-116.el6_2
samba-winbind-clients
3.5.10-116.el6_2
samba-winbind-devel
3.5.10-116.el6_2
samba-winbind-krb5-locator
3.5.10-116.el6_2
Oracle Linux i686
libsmbclient
3.5.10-116.el6_2
libsmbclient-devel
3.5.10-116.el6_2
samba
3.5.10-116.el6_2
samba-client
3.5.10-116.el6_2
samba-common
3.5.10-116.el6_2
samba-doc
3.5.10-116.el6_2
samba-domainjoin-gui
3.5.10-116.el6_2
samba-swat
3.5.10-116.el6_2
samba-winbind
3.5.10-116.el6_2
samba-winbind-clients
3.5.10-116.el6_2
samba-winbind-devel
3.5.10-116.el6_2
samba-winbind-krb5-locator
3.5.10-116.el6_2
Oracle Linux 5
Oracle Linux ia64
samba3x
3.5.10-0.109.el5_8
samba3x-client
3.5.10-0.109.el5_8
samba3x-common
3.5.10-0.109.el5_8
samba3x-doc
3.5.10-0.109.el5_8
samba3x-domainjoin-gui
3.5.10-0.109.el5_8
samba3x-swat
3.5.10-0.109.el5_8
samba3x-winbind
3.5.10-0.109.el5_8
samba3x-winbind-devel
3.5.10-0.109.el5_8
Oracle Linux x86_64
samba3x
3.5.10-0.109.el5_8
samba3x-client
3.5.10-0.109.el5_8
samba3x-common
3.5.10-0.109.el5_8
samba3x-doc
3.5.10-0.109.el5_8
samba3x-domainjoin-gui
3.5.10-0.109.el5_8
samba3x-swat
3.5.10-0.109.el5_8
samba3x-winbind
3.5.10-0.109.el5_8
samba3x-winbind-devel
3.5.10-0.109.el5_8
Oracle Linux i386
samba3x
3.5.10-0.109.el5_8
samba3x-client
3.5.10-0.109.el5_8
samba3x-common
3.5.10-0.109.el5_8
samba3x-doc
3.5.10-0.109.el5_8
samba3x-domainjoin-gui
3.5.10-0.109.el5_8
samba3x-swat
3.5.10-0.109.el5_8
samba3x-winbind
3.5.10-0.109.el5_8
samba3x-winbind-devel
3.5.10-0.109.el5_8
Связанные CVE
Связанные уязвимости
The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.
The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.
The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.
The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) ...
The (1) CreateAccount, (2) OpenAccount, (3) AddAccountRights, and (4) RemoveAccountRights LSA RPC procedures in smbd in Samba 3.4.x before 3.4.17, 3.5.x before 3.5.15, and 3.6.x before 3.6.5 do not properly restrict modifications to the privileges database, which allows remote authenticated users to obtain the "take ownership" privilege via an LSA connection.