Secunia - Stay Secure
Gartner
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Mandriva update for samba Advisory Available in Danish  Advisory Available in German 

Secunia Advisory: SA27720  
Release Date: 2007-11-19
Last Update: 2007-11-30

Critical:
Moderately critical
Impact: System access
Where: From local network
Solution Status: Vendor Patch

OS:Mandriva Linux 2007.0


CVE reference:CVE-2007-4572 (Secunia mirror)
CVE-2007-5398 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Mandriva has issued an update for samba. This fixes some vulnerabilities, which can be exploited by malicious people to compromise a vulnerable system.

For more information:
SA27450

Solution:
Apply updated packages.

Mandriva Linux 2007

2039eaae8be4583d321a6e60da9168bd 2007.0/i586/libsmbclient0-3.0.23d-2.6mdv2007.0.i586.rpm
93f459fb0a34bd35a531a2c036017185 2007.0/i586/libsmbclient0-devel-3.0.23d-2.6mdv2007.0.i586.rpm
3485f5dd9e8bcee75b603a60b10c7e91 2007.0/i586/libsmbclient0-static-devel-3.0.23d-2.6mdv2007.0.i586.rpm
59f8cc4c2a5437b55e07c65400569942 2007.0/i586/mount-cifs-3.0.23d-2.6mdv2007.0.i586.rpm
488503012b9e52227db8b344d93de5e2 2007.0/i586/nss_wins-3.0.23d-2.6mdv2007.0.i586.rpm
ca7e32813c7bb5922eb10cf2f30aa328 2007.0/i586/samba-client-3.0.23d-2.6mdv2007.0.i586.rpm
a01190bc34ec6098b92cea474f6f2ac9 2007.0/i586/samba-common-3.0.23d-2.6mdv2007.0.i586.rpm
10cdc0cb9bea3bfb2a5f794e076bf561 2007.0/i586/samba-doc-3.0.23d-2.6mdv2007.0.i586.rpm
680fb6d33e8affb66a6d8f751fb21f29 2007.0/i586/samba-server-3.0.23d-2.6mdv2007.0.i586.rpm
532fa0eb504c9fc5cefb5dd7f8eecd22 2007.0/i586/samba-smbldap-tools-3.0.23d-2.6mdv2007.0.i586.rpm
c4eae844fe0189bd3e106448817d4d27 2007.0/i586/samba-swat-3.0.23d-2.6mdv2007.0.i586.rpm
c9b2f790aef9a8d6f51495a02ebbef88 2007.0/i586/samba-vscan-clamav-3.0.23d-2.6mdv2007.0.i586.rpm
e3237fa6de2857c1415faae884df129f 2007.0/i586/samba-vscan-icap-3.0.23d-2.6mdv2007.0.i586.rpm
0f340057cfbc86921a6a3768bc9b3577 2007.0/i586/samba-winbind-3.0.23d-2.6mdv2007.0.i586.rpm
d2f0baaa327e54e67c7ec6c9bcbaefd1 2007.0/SRPMS/samba-3.0.23d-2.6mdv2007.0.src.rpm

Mandriva Linux 2007/X86_64

7da1ed6930ace5327051b6f552adec73 2007.0/x86_64/lib64smbclient0-3.0.23d-2.6mdv2007.0.x86_64.rpm
1050200ab06ebeae8281700aea6080e0 2007.0/x86_64/lib64smbclient0-devel-3.0.23d-2.6mdv2007.0.x86_64.rpm
740da4fd36c02ea6eb99e09d00c11bfb 2007.0/x86_64/lib64smbclient0-static-devel-3.0.23d-2.6mdv2007.0.x86_64.rpm
6f43ebf8a33486fd6d9bd1270a218727 2007.0/x86_64/mount-cifs-3.0.23d-2.6mdv2007.0.x86_64.rpm
27a49d57733dcac4615c9faf473d2eff 2007.0/x86_64/nss_wins-3.0.23d-2.6mdv2007.0.x86_64.rpm
45eccf713c52f885fa4a0d68e79b5c35 2007.0/x86_64/samba-client-3.0.23d-2.6mdv2007.0.x86_64.rpm
9cc10d3fe57ed4ecf7a6643b13990465 2007.0/x86_64/samba-common-3.0.23d-2.6mdv2007.0.x86_64.rpm
aa99bae716a3790d7459161739545455 2007.0/x86_64/samba-doc-3.0.23d-2.6mdv2007.0.x86_64.rpm
21346627068538abb599f2c406f5ca3d 2007.0/x86_64/samba-server-3.0.23d-2.6mdv2007.0.x86_64.rpm
43f7a78e6504ddf7bd41b23f195f6c40 2007.0/x86_64/samba-smbldap-tools-3.0.23d-2.6mdv2007.0.x86_64.rpm
89e582ef875a2b9508144cb7f106dc4f 2007.0/x86_64/samba-swat-3.0.23d-2.6mdv2007.0.x86_64.rpm
53da150a8489d33bb79e01007b3bd288 2007.0/x86_64/samba-vscan-clamav-3.0.23d-2.6mdv2007.0.x86_64.rpm
5cba21c1bdf242012b9f6e607053fe88 2007.0/x86_64/samba-vscan-icap-3.0.23d-2.6mdv2007.0.x86_64.rpm
39e9a3580976b0249554087abf70e830 2007.0/x86_64/samba-winbind-3.0.23d-2.6mdv2007.0.x86_64.rpm
d2f0baaa327e54e67c7ec6c9bcbaefd1 2007.0/SRPMS/samba-3.0.23d-2.6mdv2007.0.src.rpm

Changelog:
2007-11-22: Updated "Solution" section with new packages that fix a functionality bug introduced by the original patch for CVE-2007-4572.
2007-11-30: Updated "Solution" section with new package information due to a regression in previous packages.

Original Advisory:
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:224
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:224-2
http://www.mandriva.com/en/security/advisories?name=MDKSA-2007:224-3

Other References:
SA27450:
http://secunia.com/advisories/27450/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

269 Related Secunia Security Advisories, displaying 10

1. Mandriva update for rsync
2. Mandriva update for cups
3. Mandriva update for openssh
4. Mandriva update for perl-Tk
5. Mandriva update for sarg
6. Mandriva update for bzip2
7. Mandriva update for krb5
8. Mandriva update for perl-Net-DNS
9. Mandriva update for unzip
10. Mandriva update for gcc

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
Mozilla Firefox Multiple Vulnerabilities
2.
Opera for Windows Unspecified Code Execution
3.
VLC Media Player WAV Processing Integer Overflow
4.
PCRE pcre_compile.c Buffer Overflow Vulnerability
5.
Mozilla Thunderbird Multiple Vulnerabilities
6.
GNOME Glib PCRE pcre_compile.c Buffer Overflow Vulnerability
7.
Fedora update for glib2
8.
zlib Denial of Service Vulnerability
9.
Internet Explorer 7 Frame Location Handling Vulnerability
10.
UnixWare ReliantHA Privilege Escalation Vulnerabilities





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia