USN-1802-1: Samba vulnerability

Ubuntu Security Notice USN-1802-1

16th April, 2013

samba vulnerability

A security issue affects these releases of Ubuntu and its derivatives:

  • Ubuntu 12.04 LTS

Summary

Samba would allow unintended write access to files over the network.

Software description

  • samba - SMB/CIFS file, print, and login server for Unix

Details

It was discovered that Samba incorrectly handled CIFS share attributes when
SMB2 was used. A remote authenticated user could possibly gain write access
to certain shares, bypassing the intended permissions.

Update instructions

The problem can be corrected by updating your system to the following package version:

Ubuntu 12.04 LTS:
samba 2:3.6.3-2ubuntu2.6

To update your system, please follow these instructions: https://wiki.ubuntu.com/Security/Upgrades.

In general, a standard system update will make all the necessary changes.

References

CVE-2013-0454