[Pkg-samba-maint] Bug#668309: Bug#668309: samba: remote code execution (CVE-2012-1182)

Jelmer Vernooij jelmer at samba.org
Wed Apr 11 08:12:38 UTC 2012


Am 11/04/12 07:18, schrieb Christian PERRIER:
> Quoting Yves-Alexis Perez (corsac at debian.org):
>> Source: samba
>> Version: 3.6.3-2
>> Severity: critical
>> Tags: security
>> Justification: root security hole
>>
>> Hey,
>>
>> samba team just released an advisory for a remote code execution (as
>> root) : https://www.samba.org/samba/security/CVE-2012-1182
>>
>> Please package 3.6.4 for sid/testing and backport 3.5.14 fixes to
>> squeeze when possible.
>
> Jelmer Vernooij was working on it during last weeks and packages
> should hit unstable and stable-security very soon.
>
> Jelmer, do you confirm?
>
> I'll also work on fixing 3.6 backports in squeeze-backports.
Yep - I'll do an upload later today. I've had a crazy few days; sorry
for not properly handing this over to somebody else.

Cheers,

Jelmer

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 900 bytes
Desc: OpenPGP digital signature
URL: <http://lists.alioth.debian.org/pipermail/pkg-samba-maint/attachments/20120411/90bc118c/attachment.pgp>


More information about the Pkg-samba-maint mailing list