Displaying 20 results from an estimated 50000 matches similar to: "Project news and update"
2003 Dec 27
1
Faked samba packages / rootkit?
Does anybody know of these samba packages?
http://ftp.cvut.cz/samba/samba-latest.tar.gz
AFAICS they are faked and contain some kind of rootkit (you can see
this in the history below. the server this history is from is taken
offline for security reasons, and nobody is there till 7th Jan I
can't give you more details)
> 144 w
> 145 cat /etc/issue
> 146 uname -a
> 147
2016 Nov 24
0
Any news about the patch for the CA feature?
Hi Jeremy
Sorry to disturb you.
I notice that at several months ago, you offered a patch about the frontend SMB support for the CA feature at mailing list(as shown below).
Thanks for your help and thanks for the generosity of Simplivity. It benefits me a lot.
Then, up to now,
1) Are there any updated versions about this frontend patch?
2) Are there any patches about
2009 Jun 23
1
[Announce] Samba 3.3.6 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
o CVE-2009-1888:
In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
data value can potentially affect access control when "dos filemode"
is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.3.6 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
o CVE-2009-1888:
In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
data value can potentially affect access control when "dos filemode"
is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.2.13 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1886 and CVE-2009-1888.
o CVE-2009-1886:
In Samba 3.2.0 to 3.2.12 (inclusive), the smbclient commands dealing
with file names treat user input as a format string to asprintf.
With a maliciously crafted file name smbclient can be made
to execute code triggered by the server.
2009 Jun 23
1
[Announce] Samba 3.2.13 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1886 and CVE-2009-1888.
o CVE-2009-1886:
In Samba 3.2.0 to 3.2.12 (inclusive), the smbclient commands dealing
with file names treat user input as a format string to asprintf.
With a maliciously crafted file name smbclient can be made
to execute code triggered by the server.
2009 Jun 23
1
[Announce] Samba 3.0.35 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
o CVE-2009-1888:
In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
data value can potentially affect access control when "dos filemode"
is set to "yes".
######################################################################
Changes
2009 Jun 23
1
[Announce] Samba 3.0.35 Security Release Available for Download
Release Announcements
=====================
This is a security release in order to address CVE-2009-1888.
o CVE-2009-1888:
In Samba 3.0.31 to 3.3.5 (inclusive), an uninitialized read of a
data value can potentially affect access control when "dos filemode"
is set to "yes".
######################################################################
Changes
2009 Oct 01
1
[Announce] Samba 3.3.8 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.2.15 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.0.37 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.3.8 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.2.15 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Oct 01
1
[Announce] Samba 3.0.37 Security Release Available
Release Announcements
=====================
This is a security release in order to address CVE-2009-2813, CVE-2009-2948
and CVE-2009-2906.
o CVE-2009-2813:
In all versions of Samba later than 3.0.11, connecting to the home
share of a user will use the root of the filesystem
as the home directory if this user is misconfigured to have
an empty home directory in /etc/passwd.
2009 Apr 17
1
[Announce] Samba 3.2.11 Maintenance Release Available
================================================================
"You can''t have everything.
Where would you put it?
Steven Wright
================================================================
Release Announcements
=====================
This is a maintenance release of the Samba 3.2 series.
Major enhancements in 3.2.11 include:
o Fix domain logins for WinXP
2009 Apr 17
1
[Announce] Samba 3.2.11 Maintenance Release Available
================================================================
"You can''t have everything.
Where would you put it?
Steven Wright
================================================================
Release Announcements
=====================
This is a maintenance release of the Samba 3.2 series.
Major enhancements in 3.2.11 include:
o Fix domain logins for WinXP
2004 Jul 05
3
*** Asterisk Sunday (hrrm) News: Moving ahead at CVS Warp 5
Sunday news is today published on a monday. Yesterday was fourth of
july, and I used that as an excuse for being off line yesterday.
(Sweden's national day is June 6th - and it's not yet a public holiday,
btw). Most of my Asterisk time lately have been used for producing
the registration site for Astricon and tracking down speakers that
haven't sent in their material for the conference
2004 Jul 26
0
Astricon news :: The conference agenda now published
We are happy to present the agenda for the Asterisk conference
at the Atlanta Marriot Century Center - Astricon 2004. Previously,
you could only find the tutorials agenda on the web site, but now
we've added information on the conference day as well.
The Astricon Conference starts with one day of in-depth tutorials
on many levels, both for the new Asterisk user and for the one that
considers
2010 Sep 14
1
[Announce] Samba 3.5.5, 3.4.9 and 3.3.14 Security Releases Available
Release Announcements
=====================
These are a security releases in order to address CVE-2010-3069.
o CVE-2010-3069:
All current released versions of Samba are vulnerable to
a buffer overrun vulnerability. The sid_parse() function
(and related dom_sid_parse() function in the source4 code)
do not correctly check their input lengths when reading a
binary representation of
2010 Sep 14
1
[Announce] Samba 3.5.5, 3.4.9 and 3.3.14 Security Releases Available
Release Announcements
=====================
These are a security releases in order to address CVE-2010-3069.
o CVE-2010-3069:
All current released versions of Samba are vulnerable to
a buffer overrun vulnerability. The sid_parse() function
(and related dom_sid_parse() function in the source4 code)
do not correctly check their input lengths when reading a
binary representation of