Submitted by MarcDeslauriers on Thu, 2008-11-27 14:25
Referenced CVEs:
CVE-2008-4314
Description:
===========================================================
Ubuntu Security Notice USN-680-1 November 27, 2008
samba vulnerability
CVE-2008-4314
===========================================================
A security issue affects the following Ubuntu releases:
Ubuntu 8.10
This advisory also applies to the corresponding versions of
Kubuntu, Edubuntu, and Xubuntu.
The problem can be corrected by upgrading your system to the
following package versions:
Ubuntu 8.10:
samba 2:3.2.3-1ubuntu3.3
In general, a standard system upgrade is sufficient to effect the
necessary changes.
Details follow:
It was discovered that Samba did not properly perform bounds checking
in certain operations. A remote attacker could possibly exploit this to
read arbitrary memory contents of the smb process, which could contain
sensitive infomation or possibly have other impacts, such as a denial of
service.


