CVE-2007-5398

Publication date 16 November 2007

Last updated 24 July 2024


Ubuntu priority

Stack-based buffer overflow in the reply_netbios_packet function in nmbd/nmbd_packets.c in nmbd in Samba 3.0.0 through 3.0.26a, when operating as a WINS server, allows remote attackers to execute arbitrary code via crafted WINS Name Registration requests followed by a WINS Name Query request.

Status

Package Ubuntu Release Status
samba 7.10 gutsy
Fixed 3.0.26a-1ubuntu2.2
7.04 feisty
Fixed 3.0.24-2ubuntu1.4
6.10 edgy
Fixed 3.0.22-1ubuntu4.4
6.06 LTS dapper
Fixed 3.0.22-1ubuntu3.5

References

Related Ubuntu Security Notices (USN)

    • USN-544-1
    • Samba vulnerabilities
    • 16 November 2007

Other references