What are you thinking?

View Results

Loading ... Loading ...
1 Star2 Stars3 Stars4 Stars5 Stars (Rate This)
Loading...Loading...

It is interesting to note how some very crucial security vulnerabilities in software are found a little too late. For instance, Samba just announced that it has now patched a remote code execution exploit which was present in all versions of Samba between 3.0.x and 3.6.3. This essentially means that this vulnerability is at least five years old since Samba released the 3.0.25 version as back as 2007.


This remote code execution exploit would have enabled a potential attacker to execute code as ‘root’ user acting as one from some anonymous connection. Nonetheless, the good news are that the vulnerability has been found and patched by Samba.

The developers of Samba described this security flaw in the following words, ‘ The code generator for Samba’s remote procedure call (RPC) code contained an error which caused it to generate code containing a security flaw. This generated code is used in the parts of Samba that control marshalling and unmarshalling of RPC calls over the network. The flaw caused checks on the variable containing the length of an allocated array to be done independently from the checks on the variable used to allocate the memory for that array. As both these variables are controlled by the connecting client it makes it possible for a specially crafted RPC call to cause the server to execute arbitrary code.

As this does not require an authenticated connection it is the most serious vulnerability possible in a program, and users and vendors are encouraged to patch their Samba installations immediately.’

Samba has released three new security releases. These are for such versions of the software which are currently supported and you can find them here. Moreover, patches for older versions of Samba who have this exploit have also been made available here.

Buy Cheapest Related Product From Amazon.com


Smart Car Utilizes ASCII Art To Create Twitter Commercial

Now You Can Trade-In CDs At Amazon
You can also press the left/right arrow key on your keyboard to go to previous/next post
  On April 13, 2012(2 years, 7 months ago.)

Recent Products

Buy Now | Compare  
Buy Now | Compare  
Buy Now | Compare  
Buy Now | Compare  
Compare  

What Do You Think?

Loading Disqus Comments ...
Loading Facebook Comments ...

Recent Search

Recent Tutorials

My tutorial is for those who wants to delete those history partially or fully or to disable those if they want.
This tutorial will show you how to stop those videos in your Android mobile not to play automatically.
This tutorial will help you to Disable Auto-Update Of Android Apps in your Android Device. The steps are quite easy to execute.
This tutorial will help you to clear search history from your Google Play Store in your Android Device. The steps are quite easy to execute.
This tutorial is about restoring your deleted WhatsApp chat history in Android for at most 7 days data.
Today I am going to show you how to save places in Android Google Maps and then retrieving those places in Google Maps from any devices.
Do you know that you can turn a shoe box into a phone projector? Don't believe this? See for yourself inside.
Apple has published a new guide detailing how Android users will be able to switch their contents from Android to iPhone.
The trick will let you to check your Facebook messages in the original app without downloading Messenger and it works with both iPhone or Android phone.
Want to block all disgusting ads from your android device? Read the tutorial to know how you can block ads on your Android and save data.
Close You Have To Login
User:
Pass:
Login With »Login With TwitterLogin With Facebook