Home
Reading
Searching
Subscribe
Sponsors
Statistics
Posting
Contact
Spam
Lists
Links
About
Hosting
Filtering
Features Download
Marketing
Archives
FAQ
Blog
 
Gmane
From: Pat Riehecky <riehecky-13hema8v3vg <at> public.gmane.org>
Subject: Security ERRATA Moderate: samba3x on SL5.x i386/x86_64
Newsgroups: gmane.linux.scientific.errata
Date: Thursday 10th October 2013 20:22:21 UTC (over 3 years ago)
Synopsis:          Moderate: samba3x security and bug fix update
Advisory ID:       SLSA-2013:1310-1
Issue Date:        2013-09-30
CVE Numbers:       CVE-2013-0213
                   CVE-2013-0214
                   CVE-2013-4124
--

It was discovered that the Samba Web Administration Tool (SWAT) did not
protect against being opened in a web page frame. A remote attacker could
possibly use this flaw to conduct a clickjacking attack against SWAT users
or users with an active SWAT session. (CVE-2013-0213)

A flaw was found in the Cross-Site Request Forgery (CSRF) protection
mechanism implemented in SWAT. An attacker with the knowledge of a
victim's password could use this flaw to bypass CSRF protections and
conduct a CSRF attack against the victim SWAT user. (CVE-2013-0214)

An integer overflow flaw was found in the way Samba handled an Extended
Attribute (EA) list provided by a client. A malicious client could send a
specially crafted EA list that triggered an overflow, causing the server
to loop and reprocess the list using an excessive amount of memory.
(CVE-2013-4124)

Note: This issue did not affect the default configuration of the Samba
server.

After installing this update, the smb service will be restarted
automatically.
--

SL5
  x86_64
    samba3x-3.6.6-0.136.el5.x86_64.rpm
    samba3x-client-3.6.6-0.136.el5.x86_64.rpm
    samba3x-common-3.6.6-0.136.el5.x86_64.rpm
    samba3x-debuginfo-3.6.6-0.136.el5.i386.rpm
    samba3x-debuginfo-3.6.6-0.136.el5.x86_64.rpm
    samba3x-doc-3.6.6-0.136.el5.x86_64.rpm
    samba3x-domainjoin-gui-3.6.6-0.136.el5.x86_64.rpm
    samba3x-swat-3.6.6-0.136.el5.x86_64.rpm
    samba3x-winbind-3.6.6-0.136.el5.i386.rpm
    samba3x-winbind-3.6.6-0.136.el5.x86_64.rpm
    samba3x-winbind-devel-3.6.6-0.136.el5.i386.rpm
    samba3x-winbind-devel-3.6.6-0.136.el5.x86_64.rpm
  i386
    samba3x-3.6.6-0.136.el5.i386.rpm
    samba3x-client-3.6.6-0.136.el5.i386.rpm
    samba3x-common-3.6.6-0.136.el5.i386.rpm
    samba3x-debuginfo-3.6.6-0.136.el5.i386.rpm
    samba3x-doc-3.6.6-0.136.el5.i386.rpm
    samba3x-domainjoin-gui-3.6.6-0.136.el5.i386.rpm
    samba3x-swat-3.6.6-0.136.el5.i386.rpm
    samba3x-winbind-3.6.6-0.136.el5.i386.rpm
    samba3x-winbind-devel-3.6.6-0.136.el5.i386.rpm

For dependency resolution the following were added:
  i386
    libtalloc-2.0.7-2.el5.i386.rpm
    libtalloc-compat1-2.0.7-2.el5.i386.rpm
    libtalloc-devel-2.0.7-2.el5.i386.rpm
    libtevent-0.9.18-2.el5.i386.rpm
    libtevent-devel-0.9.18-2.el5.i386.rpm

  x86_64
    libtalloc-2.0.7-2.el5.i386.rpm
    libtalloc-2.0.7-2.el5.x86_64.rpm
    libtalloc-compat1-2.0.7-2.el5.x86_64.rpm
    libtalloc-devel-2.0.7-2.el5.i386.rpm
    libtalloc-devel-2.0.7-2.el5.x86_64.rpm
    libtevent-0.9.18-2.el5.i386.rpm
    libtevent-0.9.18-2.el5.x86_64.rpm
    libtevent-devel-0.9.18-2.el5.i386.rpm
    libtevent-devel-0.9.18-2.el5.x86_64.rpm

- Scientific Linux Development Team
 
CD: 4ms