Oval Definition:oval:org.mitre.oval:def:23240
Revision Date:2014-05-26Version:14
Title:ELSA-2012:0313: samba security, bug fix, and enhancement update (Low)
Description:The default configuration of smbd in Samba before 3.3.11, 3.4.x before 3.4.6, and 3.5.x before 3.5.0rc3, when a writable share exists, allows remote authenticated users to leverage a directory traversal vulnerability, and access arbitrary files, by using the symlink command in smbclient to create a symlink containing .. (dot dot) sequences, related to the combination of the unix extensions and wide links options.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-0926
ELSA-2012:0313-03
Platform(s):Oracle Linux 5
Product(s):samba
Definition Synopsis
  • Oracle Linux 5.x
  • AND rpm test
  • libsmbclient is earlier than 0:3.0.33-3.37.el5
  • OR samba is earlier than 0:3.0.33-3.37.el5
  • OR samba-swat is earlier than 0:3.0.33-3.37.el5
  • OR samba-client is earlier than 0:3.0.33-3.37.el5
  • OR samba-common is earlier than 0:3.0.33-3.37.el5
  • OR libsmbclient-devel is earlier than 0:3.0.33-3.37.el5
  • BACK