exploits , vulnerabilities , articles , Samba Format String And Security Bypass Vulnerabilities
| Title |
Samba Format String And Security Bypass Vulnerabilities |
| Published |
2009-06-19-12:00AM |
| Updated |
2009-06-24-01:39PM |
| Class |
Unknown |
| CVE |
CVE-2009-1888 E-2009-1886 |
| Remote |
Yes |
| Local |
No |
| Credit |
Reinhard Ni??l and Jeremy Allison |
| Vulnerable |
Samba Samba 3.3.5 Samba Samba 3.2.12 Samba Samba 3.2.5 Samba Samba 3.2.4 Samba Samba 3.2.3 Samba Samba 3.2.2 Samba Samba 3.2.1 Samba Samba 3.2 Samba Samba 3.0.34 Samba Samba 3.0.33 Samba Samba 3.0.32 Samba Samba 3.0.30 MandrakeSoft Linux Mandrake 2007.1 x86_64 MandrakeSoft Linux Mandrake 2007.1 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Samba Samba 3.0.29 Samba Samba 3.0.28 Samba Samba 3.0.26 Samba Samba 3.0.25 Samba Samba 3.0.24 MandrakeSoft Linux Mandrake 2007.1 x86_64 MandrakeSoft Linux Mandrake 2007.1 MandrakeSoft Linux Mandrake 2007.1 Ubuntu Ubuntu Linux 7.04 sparc Ubuntu Ubuntu Linux 7.04 powerpc Ubuntu Ubuntu Linux 7.04 i386 Ubuntu Ubuntu Linux 7.04 amd64 Samba Samba 3.0.22 Ubuntu Ubuntu Linux 6.06 LTS sparc Ubuntu Ubuntu Linux 6.06 LTS powerpc Ubuntu Ubuntu Linux 6.06 LTS i386 Ubuntu Ubuntu Linux 6.06 LTS amd64 Samba Samba 3.0.21 Samba Samba 3.0.20 Slackware Linux 10.2 Samba Samba 3.0.14 Samba Samba 3.0.13 Samba Samba 3.0.12 Samba Samba 3.0.11 Samba Samba 3.0.10 Slackware Linux 10.1 Trustix Secure Enterprise Linux 2.0 Trustix Secure Enterprise Linux 2.0 Trustix Secure Enterprise Linux 2.0 Trustix Secure Linux 2.2 Trustix Secure Linux 2.1 Trustix Secure Linux 2.1 Trustix Secure Linux 2.1 Samba Samba 3.0.27 Samba Samba 3.0.23a MandrakeSoft Corporate Server 4.0 x86_64 MandrakeSoft Corporate Server 4.0
|
| Not Vulnerable |
Samba Samba 3.3.6 Samba Samba 3.2.13 Samba Samba 3.0.35
|
| Code |
The following proof of concept is available:smb: \> put aa%3Fbb |
| TXT |
 |
|
Advertising
|
|
Copyright 2007,
SecurityDot
Thu, 17 Dec 2009 09:20:08 +0000
Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS
EXPLOITS
VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
Chalori ww.sexocea Galerybugi XXX Image 89 . com skandal se %...etup[u Yahoo worl qqhc8.com Adultsex WWW TOOOZ sexeyphoto maa.bete.k www.syxq8. www.s.com bbs.mk169. www.zaoidc www.bodayl irankos.co www.zymy.y Deg Www.xlxx.c arab star mambo remo maa.bete.k phpBB por Xxx.vido www.0595ey Www.xlxx.c cmd Hot sexvid Soma www.xp510. www.crazyl wetcircle maxcpm.inf gaGGED Sexy still www.nylona IIS6.0 maxcpm.inf sex Ponygaller kontol ari guest book 200 /compo bogdan alu sex maxcpm.inf php-nuke 2
|