Releases
Donations

Donate to support our development efforts.

Recent updates
base/pacman-g2
3.7.2-2solaria1-x86_64
base/pacman-g2
3.7.2-2solaria1-i686
devel-extra/fwsetup
0.9.5-2solaria1-x86_64
devel-extra/fwsetup
0.9.5-2solaria1-i686
devel-extra/fwsetup
0.9.5-1-x86_64
devel-extra/fwsetup
0.9.5-1-i686
xapps/splashy
0.3.11-4-i686
xapps/splashy
0.3.11-4-i686
xapps/splashy
0.3.11-4-x86_64
xapps/splashy
0.3.11-4-x86_64

RSS
Languages
Change language | Change language | Change language | Change language | Change language | Change language | Change language
Information
Go Frugalware, Go
Valid XHTML 1.0!
Valid CSS!
Valid RSS!
Server information
Uptime:
9 day(s) 19 h 15 m 31 s
FSA475 - samba
Package:samba
Date:2008-06-13
Vulnerable version:3.0.28-1
Unaffected version:3.0.30-1kalgan1
Bug tracker entry:http://bugs.frugalware.org/task/3115
CVEs:http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1105
Description:Secunia Research has discovered a vulnerability in Samba, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused due to a boundary error within the "receive_smb_raw()" function in lib/util_sock.c when parsing SMB packets. This can be exploited to cause a heap-based buffer overflow via an overly large SMB packet received in a client context. Successful exploitation allows execution of arbitrary code by tricking a user into connecting to a malicious server (e.g. by clicking an "smb://" link) or by sending specially crafted packets to an "nmbd" server configured as a local or domain master browser.
© 2003-2008. The Frugalware Developer Team