CVE-2007-4572
Publication date 16 November 2007
Last updated 24 July 2024
Ubuntu priority
Stack-based buffer overflow in nmbd in Samba 3.0.0 through 3.0.26a, when configured as a Primary or Backup Domain controller, allows remote attackers to have an unknown impact via crafted GETDC mailslot requests, related to handling of GETDC logon server requests.
Status
Package | Ubuntu Release | Status |
---|---|---|
samba | 8.04 LTS hardy |
Not affected
|
7.10 gutsy |
Fixed 3.0.26a-1ubuntu2.4
|
|
7.04 feisty |
Fixed 3.0.24-2ubuntu1.6
|
|
6.10 edgy | Ignored end of life, was needed | |
6.06 LTS dapper |
Fixed 3.0.22-1ubuntu3.7
|
Notes
jdstrand
believed by upstream to be unexploitable Debian 3.0.24-6etch8 should be regression free (check earlier versions too) suse has most complete fix