![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.150729 |
Category: | General |
Title: | Samba 3.0.0 <= 3.6.3 Remote Code Execution Vulnerability (CVE-2012-1182) |
Summary: | Samba 3.0.x to 3.6.3 are affected by a vulnerability that allows; remote code execution (RCE) as the 'root' user. |
Description: | Summary: Samba 3.0.x to 3.6.3 are affected by a vulnerability that allows remote code execution (RCE) as the 'root' user. Vulnerability Insight: Samba versions 3.6.3 and all versions previous to this are affected by a vulnerability that allows remote code execution as the 'root' user from an anonymous connection. The code generator for Samba's remote procedure call (RPC) code contained an error which caused it to generate code containing a security flaw. This generated code is used in the parts of Samba that control marshalling and unmarshalling of RPC calls over the network. The flaw caused checks on the variable containing the length of an allocated array to be done independently from the checks on the variable used to allocate the memory for that array. As both these variables are controlled by the connecting client it makes it possible for a specially crafted RPC call to cause the server to execute arbitrary code. As this does not require an authenticated connection it is the most serious vulnerability possible in a program, and users and vendors are encouraged to patch their Samba installations immediately. Affected Software/OS: Samba versions 3.0.0 through 3.6.3. Solution: Update to version 3.4.16, 3.5.14, 3.6.4 or later. CVSS Score: 10.0 CVSS Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C |
Cross-Ref: |
Common Vulnerability Exposure (CVE) ID: CVE-2012-1182 http://lists.apple.com/archives/security-announce/2012/May/msg00001.html Debian Security Information: DSA-2450 (Google Search) http://www.debian.org/security/2012/dsa-2450 http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078726.html http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078836.html http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078258.html http://lists.fedoraproject.org/pipermail/package-announce/2012-May/080567.html HPdes Security Advisory: HPSBMU02790 http://marc.info/?l=bugtraq&m=133951282306605&w=2 HPdes Security Advisory: HPSBUX02789 http://marc.info/?l=bugtraq&m=134323086902585&w=2 HPdes Security Advisory: SSRT100824 HPdes Security Advisory: SSRT100872 http://www.mandriva.com/security/advisories?name=MDVSA-2012:055 http://www.securitytracker.com/id?1026913 http://secunia.com/advisories/48751 http://secunia.com/advisories/48754 http://secunia.com/advisories/48816 http://secunia.com/advisories/48818 http://secunia.com/advisories/48844 http://secunia.com/advisories/48873 http://secunia.com/advisories/48879 http://secunia.com/advisories/48999 SuSE Security Announcement: SUSE-SU-2012:0501 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00007.html SuSE Security Announcement: SUSE-SU-2012:0502 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00008.html SuSE Security Announcement: SUSE-SU-2012:0504 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00009.html SuSE Security Announcement: SUSE-SU-2012:0515 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00014.html http://www.ubuntu.com/usn/USN-1423-1 |
Copyright | Copyright (C) 2021 Greenbone AG |
This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |