HIGH7.5
Samba before 2.2.5 does not properly terminate the enum_csc_policy data structure, which may allow remote attackers to execute arbitrary code via a buffer overflow attack.
CVSS 2.0ВЫСОКАЯ 7.5
CVSS:2.0/AV:N/AC:L/Au:N/C:P/I:P/A:PСсылки
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc
- http://lists.samba.org/archive/samba-technical/2002-June/022075.html
- http://rhn.redhat.com/errata/RHBA-2002-209.html
- http://www.iss.net/security_center/static/10010.php
- http://www.securityfocus.com/bid/5587
- ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:05.asc
- http://lists.samba.org/archive/samba-technical/2002-June/022075.html
- http://rhn.redhat.com/errata/RHBA-2002-209.html
- http://www.iss.net/security_center/static/10010.php
- http://www.securityfocus.com/bid/5587