Oval Definition:oval:com.redhat.rhsa:def:20040670
Revision Date:2004-12-16Version:502
Title:RHSA-2004:670: samba security update (Important)
Description:Samba provides file and printer sharing services to SMB/CIFS clients.

Greg MacManus of iDEFENSE Labs has discovered an integer overflow bug in Samba versions prior to 3.0.10. An authenticated remote user could exploit this bug which may lead to arbitrary code execution on the Samba server. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CAN-2004-1154 to this issue.

Users of Samba should upgrade to these updated packages, which contain backported security patches, and are not vulnerable to these issues.
Family:unixClass:patch
Status:Reference(s):CVE-2004-1154
RHSA-2004:670-01
Platform(s):Red Hat Enterprise Linux 3
Product(s):
Definition Synopsis
  • Red Hat Enterprise Linux 3 is installed
  • AND Package Information
  • samba-client is earlier than 0:3.0.9-1.3E.1
  • AND samba-client is signed with Red Hat master key
  • OR
  • samba-common is earlier than 0:3.0.9-1.3E.1
  • AND samba-common is signed with Red Hat master key
  • OR
  • samba is earlier than 0:3.0.9-1.3E.1
  • AND samba is signed with Red Hat master key
  • OR
  • samba-swat is earlier than 0:3.0.9-1.3E.1
  • AND samba-swat is signed with Red Hat master key
  • BACK