![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.63101 |
Categoría: | Slackware Local Security Checks |
Título: | Slackware: Security Advisory (SSA:2009-005-01) |
Resumen: | The remote host is missing an update for the 'samba' package(s) announced via the SSA:2009-005-01 advisory. |
Descripción: | Summary: The remote host is missing an update for the 'samba' package(s) announced via the SSA:2009-005-01 advisory. Vulnerability Insight: New samba packages are available for Slackware 12.2 and -current to fix a security issue. More details about this issue may be found in the Common Vulnerabilities and Exposures (CVE) database: [link moved to references] Here are the details from the Slackware 12.2 ChangeLog: +--------------------------+ patches/packages/samba-3.2.7-i486-1_slack12.2.tgz: Upgraded to samba-3.2.7. This fixes a security issue. From the WHATSNEW.txt file: 'This is a security release in order to address CVE-2009-0022. o CVE-2009-0022 In Samba 3.2.0 to 3.2.6, in setups with registry shares enabled, access to the root filesystem ('/') is granted when connecting to a share called '' (empty string) using old versions of smbclient (before 3.0.28). The original security announcement for this and past advisories can be found [link moved to references]' For more information, see: [link moved to references] (* Security fix *) +--------------------------+ Affected Software/OS: 'samba' package(s) on Slackware 12.2, Slackware current. Solution: Please install the updated package(s). CVSS Score: 6.3 CVSS Vector: AV:N/AC:M/Au:S/C:C/I:N/A:N |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2009-0022 1021513 http://www.securitytracker.com/id?1021513 33118 http://www.securityfocus.com/bid/33118 33379 http://secunia.com/advisories/33379 33392 http://secunia.com/advisories/33392 33431 http://secunia.com/advisories/33431 51152 http://osvdb.org/51152 ADV-2009-0017 http://www.vupen.com/english/advisories/2009/0017 FEDORA-2009-0268 https://www.redhat.com/archives/fedora-package-announce/2009-January/msg00309.html MDVSA-2009:042 http://www.mandriva.com/security/advisories?name=MDVSA-2009:042 USN-702-1 https://usn.ubuntu.com/702-1/ http://master.samba.org/samba/ftp/patches/security/samba-3.2.6-CVE-2009-0022.patch http://www.samba.org/samba/security/CVE-2009-0022.html samba-file-system-security-bypass(47733) https://exchange.xforce.ibmcloud.com/vulnerabilities/47733 |
Copyright | Copyright (C) 2012 Greenbone AG |
Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |