CVE-2011-0719

Publication date 28 February 2011

Last updated 24 July 2024


Ubuntu priority

Samba 3.x before 3.3.15, 3.4.x before 3.4.12, and 3.5.x before 3.5.7 does not perform range checks for file descriptors before use of the FD_SET macro, which allows remote attackers to cause a denial of service (stack memory corruption, and infinite loop or daemon crash) by opening a large number of files, related to (1) Winbind or (2) smbd.

Status

Package Ubuntu Release Status
samba 10.10 maverick
Fixed 2:3.5.4~dfsg-1ubuntu8.3
10.04 LTS lucid
Fixed 2:3.4.7~dfsg-1ubuntu3.4
9.10 karmic
Fixed 2:3.4.0-3ubuntu5.8
8.04 LTS hardy
Fixed 3.0.28a-1ubuntu4.14
6.06 LTS dapper
Fixed 3.0.22-1ubuntu3.14

References

Related Ubuntu Security Notices (USN)

Other references