Samba过多共享连接请求拒绝服务漏洞

漏洞信息详情

Samba过多共享连接请求拒绝服务漏洞

漏洞简介

Samba是Samba团队开发的一套可使UNIX系列的操作系统与微软Windows操作系统的SMB/CIFS网络协议做连结的自由软件。该软件支持共享打印机、互相传输资料文件等。

Samba的实现上存在意外情况处理失败的问题,远程攻击者可能利用此漏洞对Samba服务器执行拒绝服务攻击。

smbd守护程序维护着追踪文件和打印共享活动连接的内部数据结构。在某些环境下如果向smbd守护程序发送了大量的共享连接请求的话,就会导致持续增加smbd进程的内存占用率,造成拒绝服务。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,补丁下载链接:

Samba Samba 3.0.20b

Samba samba-3.0-CAN-2006-3403.patch

http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch

Turbolinux Turbolinux 10 F…

Turbolinux samba-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-2.2.7a-15jaJP.i586.rpm

Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-devel-2.2.7a-15jaJP.i586.rpm

Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/smbfs-2.2.7a-15jaJP.i586.rpm

Turbolinux Turbolinux FUJI

Turbolinux samba-3.0.20a-6.i686.rpm

Turbolinux FUJI

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux samba-devel-3.0.20a-6.i686.rpm

Turbolinux FUJI

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux samba-python-3.0.20a-6.i686.rpm

Turbolinux FUJI

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux smbfs-3.0.20a-6.i686.rpm

Turbolinux FUJI

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Samba Samba 3.0.21a

Samba samba-3.0-CAN-2006-3403.patch

http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch

Samba Samba 3.0.21b

Samba samba-3.0-CAN-2006-3403.patch

http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch

Samba Samba 3.0.20a

Samba samba-3.0-CAN-2006-3403.patch

http://us2.samba.org/samba/ftp/patches/security/samba-3.0-CAN-2006-340 3.patch

TurboLinux Multimedia

Turbolinux samba-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-2.2.7a-15jaJP.i586.rpm

Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/samba-devel-2.2.7a-15jaJP.i586.rpm

Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm

Turbolinux 10 Desktop, Turbolinux 10 F…, Turbolinux Home, Turbolinux Multimedia, Turbolinux Personal

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Desktop/10/u pdates/RPMS/smbfs-2.2.7a-15jaJP.i586.rpm

Slackware Linux -current

Slackware Updated package for Slackware -current:

ftp://ftp.slackware.com/pub/slackware/slackware-current/slackware/n/sa mba-3.0.23-i486-1.tgz

Turbolinux Appliance Server 1.0 Workgroup Edition

Turbolinux samba-2.2.7a-15jaJP.i586.rpm

Turbolinux Appliance Server 1.0 Workgroup Edition

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux samba-devel-2.2.7a-15jaJP.i586.rpm

Turbolinux Appliance Server 1.0 Workgroup Edition

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux smbfs-2.2.7a-15jaJP.i586.rpm

Turbolinux Appliance Server 1.0 Workgroup Edition

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/

Turbolinux Turbolinux Server 10.0

Turbolinux samba-3.0.6-17.i586.rpm

Turbolinux 10 Server

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/10/up dates/RPMS/samba-3.0.6-17.i586.rpm

Turbolinux samba-3.0.6-17.x86_64.rpm

Turbolinux 10 Server x64 Edition

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/x64/Server/10/upd ates/RPMS/samba-3.0.6-17.x86_64.rpm

Turbolinux samba-debug-3.0.6-17.i586.rpm

Turbolinux 10 Server

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/ia32/Server/10/up dates/RPMS/samba-debug-3.0.6-17.i586.rpm

Turbolinux samba-debug-3.0.6-17.x86_64.rpm

Turbolinux 10 Server x64 Edition

ftp://ftp.turbolinux.co.jp/pub/TurboLinux/TurboLinux/x64/Server/10/upd ates/RPMS/samba-debug-3.0.6-17.x86_64.rpm

Turbolinux samba-devel

参考网址

来源: US-CERT

名称: TA06-333A

链接:http://www.us-cert.gov/cas/techalerts/TA06-333A.html

来源: US-CERT

名称: VU#313836

链接:http://www.kb.cert.org/vuls/id/313836

来源: BID

名称: 18927

链接:http://www.securityfocus.com/bid/18927

来源: www.samba.org

链接:http://www.samba.org/samba/security/CAN-2006-3403.html

来源: VUPEN

名称: ADV-2006-2745

链接:http://www.frsirt.com/english/advisories/2006/2745

来源: SECUNIA

名称: 20983

链接:http://secunia.com/advisories/20983

来源: SECUNIA

名称: 20980

链接:http://secunia.com/advisories/20980

来源: MANDRIVA

名称: MDKSA-2006:120

链接:http://frontal2.mandriva.com/security/advisories?name=MDKSA-2006:120

来源: XF

名称: samba-smbd-connection-dos(27648)

链接:http://xforce.iss.net/xforce/xfdb/27648

来源: www.vmware.com

链接:http://www.vmware.com/download/esx/esx-213-200610-patch.html

来源: www.vmware.com

链接:http://www.vmware.com/download/esx/esx-202-200610-patch.html

来源: UBUNTU

名称: USN-314-1

链接:http://www.ubuntu.com/usn/usn-314-1

来源: BUGTRAQ

名称: 20061113 VMSA-2006-0008 – VMware ESX Server 2.0.2 Upgrade Patch 2

链接:http://www.securityfocus.com/archive/1/archive/1/451426/100/200/threaded

来源: BUGTRAQ

名称: 20061113 VMSA-2006-0007 – VMware ESX Server 2.1.3 Upgrade Patch 2

链接:http://www.securityfocus.com/archive/1/archive/1/451417/100/200/threaded

来源: BUGTRAQ

名称: 20061113 VMSA-2006-0006 – VMware ESX Server 2.5.3 Upgrade Patch 4

链接:http://www.securityfocus.com/archive/1/archive/1/451404/100/0/threaded

来源: HP

名称: HPSBUX02155

链接:http://www.securityfocus.com/archive/1/archive/1/448957/100/0/threaded

来源: BUGTRAQ

名称: 20060721 Re: Samba Internal Data Structures DOS Vulnerability Exploit

链接:http://www.securityfocus.com/archive/1/archive/1/440836/100/0/threaded

来源: BUGTRAQ

名称: 20060720 Samba Internal Data Structures DOS Vulnerability Exploit

链接:http://www.securityfocus.com/archive/1/archive/1/440767/100/0/threaded

来源: BUGTRAQ

名称: 20060711 rPSA-2006-0128-1 samba samba-swat

链接:http://www.securityfocus.com/archive/1/archive/1/439880/100/100/threaded

来源: BUGTRAQ

名称: 20060710 Re: [ANNOUNCEMENT] Samba 3.0.1 – 3.0.22: memory exhaustion DoS against smbd

链接:http://www.securityfocus.com/archive/1/archive/1/439875/100/0/threaded

来源: BUGTRAQ

名称: 20060710 [ANNOUNCEMENT] Samba 3.0.1 – 3.0.22: memory exhaustion DoS against smbd

链接:http://www.securityfocus.com/archive/1/archive/1/439757/100/0/threaded

来源: REDHAT

名称: RHSA-2006:0591

链接:http://www.redhat.com/support/errata/RHSA-2006-0591.html

来源: SUSE

名称: SUSE-SR:2006:017

链接:http://www.novell.com/linux/security/advisories/2006_17_sr.html

来源: MANDRIVA

名称: MDKSA-2006:120

链接:http://www.mandriva.com/security/advisories?name=MDKSA-2006:120

来源: VUPEN

名称: ADV-2006-4750

链接:http://www.frsirt.com/english/advisories/2006/4750

来源: VUPEN

名称: ADV-2006-4502

链接:http://www.frsirt.com/english/advisories/2006/4502

来源: DEBIAN

名称: DSA-1110

链接:http://www.debian.org/security/2006/dsa-1110

来源: SLACKWARE

名称: SSA:2006-195

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2006&m=slackware-security.416876

来源: SECTRACK

名称: 1016459

链接:http://securitytracker.com/id?1016459

来源: MISC

链接:http://securitydot.net/xpl/exploits/vulnerabilities/articles/1175/exploit.html

来源: GENTOO

名称: GLSA-200607-10

链接:http://security.gentoo.org/glsa/glsa-200607-10.xml

来源: SECUNIA

名称: 23155

链接:http://secunia.com/advisories/23155

来源: SECUNIA

名称: 22875

链接:http://secunia.com/advisories/22875

来源: SECUNIA

名称: 21262

链接:http://secunia.com/advisories/21262

来源: SECUNIA

名称: 21190

链接:http://secunia.com/advisories/21190

来源: SECUNIA

名称: 21187

链接:http://secunia.com/advisories/21187

来源: SECUNIA

名称: 21159

链接:http://secunia.com/advisories/21159

来源: SECUNIA

名称: 21143

链接:http://secunia.com/advisories/21143

来源: SECUNIA

名称: 21086

链接:http://secunia.com/advisories/21086

来源: SECUNIA

名称: 21046

链接:http://secunia.com/advisories/21046

来源: SECUNIA

名称: 21019

链接:http://secunia.com/advisories/21019

来源: SECUNIA

名称: 21018

链接:http://se

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享