exploits , vulnerabilities , articles , Samba Format String And Security Bypass Vulnerabilities
| Title |
Samba Format String And Security Bypass Vulnerabilities |
| Published |
2009-06-19-12:00AM |
| Updated |
2009-06-24-01:39PM |
| Class |
Unknown |
| CVE |
CVE-2009-1888 E-2009-1886 |
| Remote |
Yes |
| Local |
No |
| Credit |
Reinhard Ni??l and Jeremy Allison |
| Vulnerable |
Samba Samba 3.3.5 Samba Samba 3.2.12 Samba Samba 3.2.5 Samba Samba 3.2.4 Samba Samba 3.2.3 Samba Samba 3.2.2 Samba Samba 3.2.1 Samba Samba 3.2 Samba Samba 3.0.34 Samba Samba 3.0.33 Samba Samba 3.0.32 Samba Samba 3.0.30 MandrakeSoft Linux Mandrake 2007.1 x86_64 MandrakeSoft Linux Mandrake 2007.1 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Samba Samba 3.0.29 Samba Samba 3.0.28 Samba Samba 3.0.26 Samba Samba 3.0.25 Samba Samba 3.0.24 MandrakeSoft Linux Mandrake 2007.1 x86_64 MandrakeSoft Linux Mandrake 2007.1 MandrakeSoft Linux Mandrake 2007.1 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Samba Samba 3.0.22 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 Samba Samba 3.0.21 Samba Samba 3.0.20 Slackware Linux 10.2 Samba Samba 3.0.14 Samba Samba 3.0.13 Samba Samba 3.0.12 Samba Samba 3.0.11 Samba Samba 3.0.10 Slackware Linux 10.1 Trustix Secure Enterprise Linux 2.0 Trustix Secure Enterprise Linux 2.0 Trustix Secure Enterprise Linux 2.0 Trustix Secure Linux 2.2 Trustix Secure Linux 2.1 Trustix Secure Linux 2.1 Trustix Secure Linux 2.1 Samba Samba 3.0.27 Samba Samba 3.0.23a MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0
|
| Not Vulnerable |
Samba Samba 3.3.6 Samba Samba 3.2.13 Samba Samba 3.0.35
|
| Code |
The following proof of concept is available:smb: \> put aa%3Fbb |
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Wed, 16 Dec 2009 23:11:58 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
2...n.com/ WWww.Pink Sexy babs Metallica 2...n.com/ free+sex+t 2...n.com/ 1200sex.co 5.0 ftp wi www.yoyoho sexsites blog.19lou 2...n.com/ phpBB+SQL+ 2...n.com/ Namithsexy www.tianxi 2...n.com/ wafa amer Kubik 2...n.com/ 2...n.com/ Photos of 2...n.com/ manisha ko Makdv 2...n.com/ 200 /compo www sex 89 Directory sexsites 2...n.com/ 2...n.com/ mmmmmm.htm Wwwsouthin www sex 89 2...n.com/ Feer.XXX.W 200 /compo 2...n.com/ sexfalim 2...n.com/ 2...n.com/ 2...n.com/ 2...n.com/ 2...n.com/ gobe 2...n.com/ 2...n.com/ 2...n.com/
|