Date: Wed, 07 Feb 2007 04:14:17 -0500
From: rPath Update Announcements <announce-noreply@rpath.com.>
To: [email protected],
Subject: rPSA-2007-0026-1 samba samba-swat
Message-ID: <45c99869.2vkYIdjQlCzuWchW%[email protected]>
User-Agent: nail 11.22 3/20/05
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
X-Virus-Scanned: antivirus-gw at tyumen.ru
rPath Security Advisory: 2007-0026-1
Published: 2007-02-07
Products: rPath Linux 1
Rating: Minor
Exposure Level Classification:
Local Deterministic Denial of Service
Updated Versions:
samba=/conary.rpath.com@rpl:devel//1/3.0.24-0.1-1
samba-swat=/conary.rpath.com@rpl:devel//1/3.0.24-0.1-1
References:
http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0452http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0453http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-0454
https://issues.rpath.com/browse/RPL-1005
Description:
Previous versions of the samba package are vulnerable to a Denial
of Service attack from authenticated users only (CVE-2007-0452).
Two other vulnerabilities resolved in samba 3.0.24 do not apply
to rPath Linux 1 (CVE-2007-0453 and CVE-2007-0454).