Fedora Samba 3.0.2 Advisory Critical: Unauthorized Access Risk
Under some circumstances, Samba 3.0.0 and 3.0.1 could overwrite the password field of a disabled account with uninitialized memory.
Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Find the information you need for your favorite open source distribution .
Under some circumstances, Samba 3.0.0 and 3.0.1 could overwrite the password field of a disabled account with uninitialized memory.
This version corrects a flaw in 0.9.2 (and all earlier versions of the server) which may allow an attacker to DoS the server.
This update fixes recent gaim security problems as discussed on both the gaim web site and was addressed by a recent Red Hat errata.
Updated XFree86 packages that fix a privilege escalation vulnerability arenow available.
A local user could exploit this vulnerability to gain "slocate" group privileges and then read the entire slocate database.