漏洞信息详情
Samba过多共享连接请求拒绝服务漏洞
- CNNVD编号:CNNVD-200607-192
- 危害等级: 中危
- CVE编号:
CVE-2006-3403
- 漏洞类型:
其他
- 发布时间:
2006-07-12
- 威胁类型:
远程
- 更新时间:
2006-07-13
- 厂 商:
samba - 漏洞来源:
Samba Team -
漏洞简介
Samba是Samba团队开发的一套可使UNIX系列的操作系统与微软Windows操作系统的SMB/CIFS网络协议做连结的自由软件。该软件支持共享打印机、互相传输资料文件等。
Samba的实现上存在意外情况处理失败的问题,远程攻击者可能利用此漏洞对Samba服务器执行拒绝服务攻击。
smbd守护程序维护着追踪文件和打印共享活动连接的内部数据结构。在某些环境下如果向smbd守护程序发送了大量的共享连接请求的话,就会导致持续增加smbd进程的内存占用率,造成拒绝服务。
漏洞公告
目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:
Samba Samba 3.0.20b
Samba samba-3.0-CAN-2006-3403.patch
http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch
Turbolinux Turbolinux 10 F…
Turbolinux samba-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-2.2.7a-15jaJP.i586.rpm
Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-devel-2.2.7a-15jaJP.i586.rpm
Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/smbfs-2.2.7a-15jaJP.i586.rpm
Turbolinux Turbolinux FUJI
Turbolinux samba-3.0.20a-6.i686.rpm
Turbolinux FUJI
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux samba-devel-3.0.20a-6.i686.rpm
Turbolinux FUJI
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux samba-python-3.0.20a-6.i686.rpm
Turbolinux FUJI
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux smbfs-3.0.20a-6.i686.rpm
Turbolinux FUJI
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Samba Samba 3.0.21a
Samba samba-3.0-CAN-2006-3403.patch
http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch
Samba Samba 3.0.21b
Samba samba-3.0-CAN-2006-3403.patch
http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch
Samba Samba 3.0.20a
Samba samba-3.0-CAN-2006-3403.patch
http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch
TurboLinux Multimedia
Turbolinux samba-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-2.2.7a-15jaJP.i586.rpm
Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-devel-2.2.7a-15jaJP.i586.rpm
Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm
Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/smbfs-2.2.7a-15jaJP.i586.rpm
Slackware Linux -current
Slackware Updated package for Slackware -current:
ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/n/sa mba-3.0.23-i486-1.tgz
Turbolinux Appliance Server 1.0 Workgroup Edition
Turbolinux samba-2.2.7a-15jaJP.i586.rpm
Turbolinux Appliance Server 1.0 Workgroup Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm
Turbolinux Appliance Server 1.0 Workgroup Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm
Turbolinux Appliance Server 1.0 Workgroup Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/
Turbolinux Turbolinux Server 10.0
Turbolinux samba-3.0.6-17.i586.rpm
Turbolinux 10 Server
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/10/up dates/RPMS/samba-3.0.6-17.i586.rpm
Turbolinux samba-3.0.6-17.x86_64.rpm
Turbolinux 10 Server x64 Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/x64/Server/10/upd ates/RPMS/samba-3.0.6-17.x86_64.rpm
Turbolinux samba-debug-3.0.6-17.i586.rpm
Turbolinux 10 Server
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/10/up dates/RPMS/samba-debug-3.0.6-17.i586.rpm
Turbolinux samba-debug-3.0.6-17.x86_64.rpm
Turbolinux 10 Server x64 Edition
ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/x64/Server/10/upd ates/RPMS/samba-debug-3.0.6-17.x86_64.rpm
Turbolinux samba-devel
参考网址
来源: US-CERT
名称: TA06-333A
链接:http://www.us-cert.gov/cas/techalerts/TA06-333A.html
来源: US-CERT
名称: VU#313836
链接:http://www.kb.cert.org/vuls/id/313836
来源: BID
名称: 18927
链接:http://www.securityfocus.com/bid/18927
来源: www.samba.org
链接:http://www.samba.org/samba/security/CAN-2006-3403.html
来源: VUPEN
名称: ADV-2006-2745
链接:http://www.frsirt.com/english/advisories/2006/2745
来源: SECUNIA
名称: 20983
链接:http://secunia.com/advisories/20983
来源: SECUNIA
名称: 20980
链接:http://secunia.com/advisories/20980
来源: MANDRIVA
名称: MDKSA-2006:120
链接:http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:120
来源: XF
名称: samba-smbd-connection-dos(27648)
链接:http://xforce.iss.net/xforce/xfdb/27648
来源: www.vmware.com
链接:http://www.vmware.com/download/esx/esx-213-200610-patch.html
来源: www.vmware.com
链接:http://www.vmware.com/download/esx/esx-202-200610-patch.html
来源: UBUNTU
名称: USN-314-1
链接:http://www.ubuntu.com/usn/usn-314-1
来源: BUGTRAQ
名称: 20061113 VMSA-2006-0008 – VMware ESX Server 2.0.2 Upgrade Patch 2
链接:http://www.securityfocus.com/archive/1/archive/1/451426/100/200/threaded
来源: BUGTRAQ
名称: 20061113 VMSA-2006-0007 – VMware ESX Server 2.1.3 Upgrade Patch 2
链接:http://www.securityfocus.com/archive/1/archive/1/451417/100/200/threaded
来源: BUGTRAQ
名称: 20061113 VMSA-2006-0006 – VMware ESX Server 2.5.3 Upgrade Patch 4
链接:http://www.securityfocus.com/archive/1/archive/1/451404/100/0/threaded
来源: HP
名称: HPSBUX02155
链接:http://www.securityfocus.com/archive/1/archive/1/448957/100/0/threaded
来源: BUGTRAQ
名称: 20060721 Re: Samba Internal Data Structures DOS Vulnerability Exploit
链接:http://www.securityfocus.com/archive/1/archive/1/440836/100/0/threaded
来源: BUGTRAQ
名称: 20060720 Samba Internal Data Structures DOS Vulnerability Exploit
链接:http://www.securityfocus.com/archive/1/archive/1/440767/100/0/threaded
来源: BUGTRAQ
名称: 20060711 rPSA-2006-0128-1 samba samba-swat
链接:http://www.securityfocus.com/archive/1/archive/1/439880/100/100/threaded
来源: BUGTRAQ
名称: 20060710 Re: [ANNOUNCEMENT] Samba 3.0.1 – 3.0.22: memory exhaustion DoS against smbd
链接:http://www.securityfocus.com/archive/1/archive/1/439875/100/0/threaded
来源: BUGTRAQ
名称: 20060710 [ANNOUNCEMENT] Samba 3.0.1 – 3.0.22: memory exhaustion DoS against smbd
链接:http://www.securityfocus.com/archive/1/archive/1/439757/100/0/threaded
来源: REDHAT
名称: RHSA-2006:0591
链接:http://www.redhat.com/support/errata/RHSA-2006-0591.html
来源: SUSE
名称: SUSE-SR:2006:017
链接:http://www.novell.com/linux/security/advisories/2006_17_sr.html
来源: MANDRIVA
名称: MDKSA-2006:120
链接:http://www.mandriva.com/security/advisories?name=MDKSA-2006:120
来源: VUPEN
名称: ADV-2006-4750
链接:http://www.frsirt.com/english/advisories/2006/4750
来源: VUPEN
名称: ADV-2006-4502
链接:http://www.frsirt.com/english/advisories/2006/4502
来源: DEBIAN
名称: DSA-1110
链接:http://www.debian.org/security/2006/dsa-1110
来源: SLACKWARE
名称: SSA:2006-195
链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.416876
来源: SECTRACK
名称: 1016459
链接:http://securitytracker.com/id?1016459
来源: MISC
链接:http://securitydot.net/xpl/exploits/vulnerabilities/articles/1175/exploit.html
来源: GENTOO
名称: GLSA-200607-10
链接:http://security.gentoo.org/glsa/glsa-200607-10.xml
来源: SECUNIA
名称: 23155
链接:http://secunia.com/advisories/23155
来源: SECUNIA
名称: 22875
链接:http://secunia.com/advisories/22875
来源: SECUNIA
名称: 21262
链接:http://secunia.com/advisories/21262
来源: SECUNIA
名称: 21190
链接:http://secunia.com/advisories/21190
来源: SECUNIA
名称: 21187
链接:http://secunia.com/advisories/21187
来源: SECUNIA
名称: 21159
链接:http://secunia.com/advisories/21159
来源: SECUNIA
名称: 21143
链接:http://secunia.com/advisories/21143
来源: SECUNIA
名称: 21086
链接:http://secunia.com/advisories/21086
来源: SECUNIA
名称: 21046
链接:http://secunia.com/advisories/21046
来源: SECUNIA
名称: 21019
链接:http://secunia.com/advisories/21019
来源: SECUNIA
名称: 21018
链接:http://se