[amres-info] Ranjivost SAMBA softvera (CVE-2015-0240)

Miloš Kukoleča milos.kukoleca at amres.ac.rs
Wed Feb 25 11:44:09 CET 2015


Poštovane koleginice i kolege,

 

Pojavila se nova ranjivost u SAMBA paketu na populanim LINUX distribucijama.
SAMBA je open-source softver koji implementira SMB (Server Message Block) i
CIFS (Common Internet File System) protokole i omogućava deljenje fajlova.
Postoji mogućnost da maliciozni SAMBA korisnik iskoristi grešku u smbd
(samba daemon-u) i pomoću specijalno kreiranih paketa izvrši proizvoljni kod
na serveru. 

 

Molimo vas da proverite svoje Linux servere i ažururate verziju SAMBA paketa
prema preporukama datim od strane Linux distribucija. 

 

RedHat distribucija:

https://access.redhat.com/articles/1346913

 

 

CentOS distribucija:

http://lwn.net/Alerts/634407/

http://lwn.net/Alerts/634408/

 

 

Debian distribucija:

https://security-tracker.debian.org/tracker/CVE-2015-0240

 

 

Ubuntu distribucija:

http://www.ubuntu.com/usn/usn-2508-1/

 

Srdačan pozdrav,

 

AMRES CSIRT tim

 

Description: bplogo

 

Akademska mreža Republike Srbije

Bulevar Kralja Aleksandra 90, 11000 Beograd, Srbija

 

Tel:                +381 11 7158 942

Fax:               +381 11 3370 288

Email              <mailto:csirt at amres.ac.rs> csirt at amres.ac.rs

Internet:         <http://www.amres.ac.rs/> http://www.amres.ac.rs

 

 

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20150225/e5da5bc9/attachment.html 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: image/gif
Size: 3571 bytes
Desc: not available
Url : http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20150225/e5da5bc9/attachment.gif 
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 6819 bytes
Desc: not available
Url : http://afrodita.rcub.bg.ac.rs/pipermail/amres-info/attachments/20150225/e5da5bc9/attachment.bin 


More information about the amres-info mailing list