Synopsis: Critical: samba security update
Advisory ID: SLSA-2015:0249-1
Issue Date: 2015-02-23
CVE Numbers: CVE-2015-0240
—
An uninitialized pointer use flaw was found in the Samba daemon (smbd). A
malicious Samba client could send specially crafted netlogon packets that,
when processed by smbd, could potentially lead to arbitrary code execution
with the privileges of the user running smbd (by default, the root user).
(CVE-2015-0240)
After installing this update, the smb service will be restarted
automatically.
—
SL5
i386
samba3x-3.6.23-9.el5_11.i386.rpm
samba3x-client-3.6.23-9.el5_11.i386.rpm
samba3x-common-3.6.23-9.el5_11.i386.rpm
samba3x-debuginfo-3.6.23-9.el5_11.i386.rpm
samba3x-doc-3.6.23-9.el5_11.i386.rpm
samba3x-domainjoin-gui-3.6.23-9.el5_11.i386.rpm
samba3x-swat-3.6.23-9.el5_11.i386.rpm
samba3x-winbind-3.6.23-9.el5_11.i386.rpm
samba3x-winbind-devel-3.6.23-9.el5_11.i386.rpm
– Scientific Linux Development Team