Samba 3.4.5 client/mount.cifs.c本地拒绝服务漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

BUGTRAQ ID: 38326 CVE ID: CVE-2010-0547 Samba是一套实现SMB(Server Messages Block)协议、跨平台进行文件共享和打印共享服务的程序。 Samba的mount.cifs工具中的client/mount.cifs.c文件没有正确地验证由有效字符组成的设备名和加载点字符串,这允许本地用户通过特制的字符串导致拒绝服务(mtab破坏)。 Samba 3.4.5 厂商补丁: Debian ------ Debian已经为此发布了一个安全公告(DSA-2004-1)以及相应补丁: DSA-2004-1:New samba packages fix several vulnerabilities 链接:http://www.debian.org/security/2010/dsa-2004 补丁下载: Source archives: http://security.debian.org/pool/updates/main/s/samba/samba_3.2.5-4lenny9.dsc Size/MD5 checksum: 2470 c350b5f777685fe69e0ae2f5dcf810ed http://security.debian.org/pool/updates/main/s/samba/samba_3.2.5-4lenny9.diff.gz Size/MD5 checksum: 239988 82ad8ff6f28af236b321a7eb50d754c8 Architecture independent packages: http://security.debian.org/pool/updates/main/s/samba/samba-doc-pdf_3.2.5-4lenny9_all.deb Size/MD5 checksum: 6252746 f7df1cc363fbcd6ce2da61aaaea2e1c5 http://security.debian.org/pool/updates/main/s/samba/samba-doc_3.2.5-4lenny9_all.deb Size/MD5 checksum: 7950496...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息