SHARE
Facebook X Pinterest WhatsApp

Slackware Linux Advisory: samba

Written By
thumbnail
Web Webster
Web Webster
Nov 24, 2002
New Samba packages are available for Slackware 8.1 and -current
to fix a security problem and provide other bugfixes and improvements.
Here are the details from the Slackware 8.1 ChangeLog:

----------------------------
Wed Nov 20 16:51:23 PST 2002
patches/packages/samba-2.2.7-i386-1.tgz:  Upgraded to samba-2.2.7.
  Some details (based on the WHATSNEW.txt file included in samba-2.2.7):
    This fixes a security hole discovered in versions 2.2.2 through 2.2.6 of
    Samba that could potentially allow an attacker to gain root access
    on the target machine.  The word "potentially" is used because there
    is no known exploit of this bug, and the Samba Team has not been able to
    craft one ourselves. However, the seriousness of the problem warrants
    this immediate 2.2.7 release.  There was a bug in the length checking for
    encrypted password change requests from clients. A client could potentially
    send an encrypted password, which, when decrypted with the old hashed
    password could be used as a buffer overrun attack on the stack of smbd. The
    attack would have to be crafted such that converting a DOS codepage string
    to little endian UCS2 unicode would translate into an executable block of
    code.  Thanks to Steve Langasek <vorlon@debian.org> and Eloy Paris
    <peloy@debian.org> for bringing this vulnerability to our notice.
  (* Security fix *)
----------------------------


WHERE TO FIND THE NEW PACKAGES:
-------------------------------
Updated Samba package for Slackware 8.1:
ftp://ftp.slackware.com/pub/slackware/slackware-8.1/patches/packages/samba-2.2.7-i386-1.tgz

Updated Samba package for Slackware-current: 
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/n/samba-2.2.7-i386-1.tgz


MD5 SIGNATURES:
---------------

Here are the md5sums for the packages:

Slackware 8.1:
835f2069561251cf9649b1f60ebc21f0  samba-2.2.7-i386-1.tgz/

Slackware-current:
18eff1898b289735c51895e628797733  samba-2.2.7-i386-1.tgz/
thumbnail
Web Webster

Web Webster

Web Webster has more than 20 years of writing and editorial experience in the tech sector. He’s written and edited news, demand generation, user-focused, and thought leadership content for business software solutions, consumer tech, and Linux Today, he edits and writes for a portfolio of tech industry news and analysis websites including webopedia.com, and DatabaseJournal.com.

Recommended for you...

A Thorough Approach to Improve the Privacy and Security of Your Linux PC
Damien
Oct 24, 2024
Several Russian Maintainers Removed From Linux Kernel Due To Compliance Concerns
Senthil Kumar
Oct 23, 2024
OpenSSH Splits Again: New Authentication Binary Unveiled
Bobby Borisov
Oct 16, 2024
13 Best Free and Open Source Anti-Malware Tools
webmaster
Oct 14, 2024
Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2025 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.