Author: nion Date: 2007-11-15 21:40:20 +0000 (Thu, 15 Nov 2007) New Revision: 7312 Modified: data/CVE/list Log: CVE-2007-5398, CVE-2007-4572 fixed in samba 3.0.27-1, bumping impact Modified: data/CVE/list ==================================================================--- data/CVE/list 2007-11-15 21:36:31 UTC (rev 7311) +++ data/CVE/list 2007-11-15 21:40:20 UTC (rev 7312) @@ -1969,8 +1969,9 @@ RESERVED CVE-2007-5399 RESERVED -CVE-2007-5398 +CVE-2007-5398 [remote code execution in samba when running nmbd as WINS server] RESERVED + - samba 3.0.27-1 (high) CVE-2007-5397 RESERVED CVE-2007-5396 (Format string vulnerability in the ext_yahoo_contact_added function in ...) @@ -4155,9 +4156,9 @@ CVE-2007-4573 (The IA32 system call emulation functionality in Linux kernel 2.4.x and ...) {DSA-1381-2 DSA-1378-2 DSA-1378-1} - linux-2.6 2.6.22-5 (medium) -CVE-2007-4572 [buffer overflow leading to code execution in nmbd] +CVE-2007-4572 [buffer overflow in nmbd when processing GETDC logon server requests] RESERVED - - samba <unfixed> (medium; bug #451385) + - samba 3.0.27-1 (high; bug #451385) CVE-2007-4571 (The snd_mem_proc_read function in sound/core/memalloc.c in the ...) - linux-2.6 2.6.22-5 (low; bug #444571) NOTE: http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=600