Secunia Security Advisory - rPath has issued an update for samba and samba-swat. This fixes some vulnerabilities, which can be exploited by malicious users to perform certain actions with escalated privileges and to compromise a vulnerable system, and by malicious people to compromise a vulnerable system.
840fb5dc4362d6b91750c1ee4aef38a953988a022f7a9af04b5d6b44155c57f2
----------------------------------------------------------------------
Try a new way to discover vulnerabilities that ALREADY EXIST in your
IT infrastructure.
Join the FREE BETA test of the Network Software Inspector (NSI)!
http://secunia.com/network_software_inspector/
The NSI enables you to INSPECT, DISCOVER, and DOCUMENT
vulnerabilities in more than 4,000 different Windows applications.
----------------------------------------------------------------------
TITLE:
rPath update for samba and samba-swat
SECUNIA ADVISORY ID:
SA25241
VERIFY ADVISORY:
http://secunia.com/advisories/25241/
CRITICAL:
Moderately critical
IMPACT:
Privilege escalation, System access
WHERE:
>From local network
OPERATING SYSTEM:
rPath Linux 1.x
http://secunia.com/product/10614/
DESCRIPTION:
rPath has issued an update for samba and samba-swat. This fixes some
vulnerabilities, which can be exploited by malicious users to perform
certain actions with escalated privileges and to compromise a
vulnerable system, and by malicious people to compromise a vulnerable
system.
For more information:
SA25232
SOLUTION:
Update to the latest versions.
"samba=/conary.rpath.com@rpl:devel//1/3.0.25-0.1-1"
"samba-swat=/conary.rpath.com@rpl:devel//1/3.0.25-0.1-1"
ORIGINAL ADVISORY:
http://lists.rpath.com/pipermail/security-announce/2007-May/000187.html
OTHER REFERENCES:
SA25232:
http://secunia.com/advisories/25232/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------