Oval Definition:oval:com.redhat.rhsa:def:20100697
Revision Date:2010-09-14Version:641
Title:RHSA-2010:0697: samba security and bug fix update (Critical)
Description:Samba is a suite of programs used by machines to share files, printers, and other information.

  • A missing array boundary checking flaw was found in the way Samba parsed the binary representation of Windows security identifiers (SIDs). A malicious client could send a specially-crafted SMB request to the Samba server, resulting in arbitrary code execution with the privileges of the Samba server (smbd). (CVE-2010-3069)

    For Red Hat Enterprise Linux 4, this update also fixes the following bug:

    Previously, the restorecon utility was required during the installation of the samba-common package. As a result, attempting to update samba without this utility installed may have failed with the following error:

    /var/tmp/rpm-tmp.[xxxxx]: line 7: restorecon: command not found

  • With this update, the utility is only used when it is already present on the system, and the package is now always updated as expected. (BZ#629602)

    Users of Samba are advised to upgrade to these updated packages, which correct these issues. After installing this update, the smb service will be restarted automatically.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2010-3069
    RHSA-2010:0697
    RHSA-2010:0697-01
    RHSA-2010:0697-01
    Platform(s):Red Hat Enterprise Linux 3
    Red Hat Enterprise Linux 4
    Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 3 is installed
  • AND
  • samba-client is earlier than 0:3.0.9-1.3E.18
  • AND samba-client is signed with Red Hat master key
  • samba-common is earlier than 0:3.0.9-1.3E.18
  • AND samba-common is signed with Red Hat master key
  • samba is earlier than 0:3.0.9-1.3E.18
  • AND samba is signed with Red Hat master key
  • samba-swat is earlier than 0:3.0.9-1.3E.18
  • AND samba-swat is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • samba-common is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-common is signed with Red Hat master key
  • samba-client is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-client is signed with Red Hat master key
  • samba-swat is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-swat is signed with Red Hat master key
  • samba is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba is signed with Red Hat master key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • samba-common is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-common is signed with Red Hat redhatrelease key
  • samba-client is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-client is signed with Red Hat redhatrelease key
  • libsmbclient is earlier than 0:3.0.33-3.29.el5_5.1
  • AND libsmbclient is signed with Red Hat redhatrelease key
  • samba-swat is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-swat is signed with Red Hat redhatrelease key
  • samba is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba is signed with Red Hat redhatrelease key
  • libsmbclient-devel is earlier than 0:3.0.33-3.29.el5_5.1
  • AND libsmbclient-devel is signed with Red Hat redhatrelease key
  • Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 4 is installed
  • AND
  • samba is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba is signed with Red Hat redhatrelease2 key
  • samba-client is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-client is signed with Red Hat redhatrelease2 key
  • samba-common is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-common is signed with Red Hat redhatrelease2 key
  • samba-swat is earlier than 0:3.0.33-0.19.el4_8.3
  • AND samba-swat is signed with Red Hat redhatrelease2 key
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • libsmbclient is earlier than 0:3.0.33-3.29.el5_5.1
  • AND libsmbclient is signed with Red Hat redhatrelease2 key
  • libsmbclient-devel is earlier than 0:3.0.33-3.29.el5_5.1
  • AND libsmbclient-devel is signed with Red Hat redhatrelease2 key
  • samba is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba is signed with Red Hat redhatrelease2 key
  • samba-client is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-client is signed with Red Hat redhatrelease2 key
  • samba-common is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-common is signed with Red Hat redhatrelease2 key
  • samba-swat is earlier than 0:3.0.33-3.29.el5_5.1
  • AND samba-swat is signed with Red Hat redhatrelease2 key
  • BACK