Oval Definition:oval:com.redhat.rhsa:def:20100698
Revision Date:2010-09-14Version:636
Title:RHSA-2010:0698: samba3x security update (Critical)
Description:Samba is a suite of programs used by machines to share files, printers, and other information.

  • A missing array boundary checking flaw was found in the way Samba parsed the binary representation of Windows security identifiers (SIDs). A malicious client could send a specially-crafted SMB request to the Samba server, resulting in arbitrary code execution with the privileges of the Samba server (smbd). (CVE-2010-3069)

    Users of Samba are advised to upgrade to these updated packages, which contain a backported patch to correct this issue. After installing this update, the smb service will be restarted automatically.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2010-3069
    RHSA-2010:0698
    RHSA-2010:0698-01
    RHSA-2010:0698-01
    Platform(s):Red Hat Enterprise Linux 5
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • libtalloc is earlier than 0:1.2.0-52.el5_5.2
  • AND libtalloc is signed with Red Hat redhatrelease2 key
  • libtalloc-devel is earlier than 0:1.2.0-52.el5_5.2
  • AND libtalloc-devel is signed with Red Hat redhatrelease2 key
  • libtdb is earlier than 0:1.1.2-52.el5_5.2
  • AND libtdb is signed with Red Hat redhatrelease2 key
  • libtdb-devel is earlier than 0:1.1.2-52.el5_5.2
  • AND libtdb-devel is signed with Red Hat redhatrelease2 key
  • samba3x is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x is signed with Red Hat redhatrelease2 key
  • samba3x-client is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-client is signed with Red Hat redhatrelease2 key
  • samba3x-common is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-common is signed with Red Hat redhatrelease2 key
  • samba3x-doc is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-doc is signed with Red Hat redhatrelease2 key
  • samba3x-domainjoin-gui is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-domainjoin-gui is signed with Red Hat redhatrelease2 key
  • samba3x-swat is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-swat is signed with Red Hat redhatrelease2 key
  • samba3x-winbind is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-winbind is signed with Red Hat redhatrelease2 key
  • samba3x-winbind-devel is earlier than 0:3.3.8-0.52.el5_5.2
  • AND samba3x-winbind-devel is signed with Red Hat redhatrelease2 key
  • tdb-tools is earlier than 0:1.1.2-52.el5_5.2
  • AND tdb-tools is signed with Red Hat redhatrelease2 key
  • BACK