Re: security risk

Jeff Layton <[email protected]>
Newsgroups gmane.linux.file-systems.cifs
Message-ID <[email protected]>
On Fri, 1 May 2009 08:57:00 -0400
[email protected] wrote:

> 
> Hello All,
>       We ran a vulnerability test on our Linux box, and found a possible
> security risk with the version of samba we are running, 3.0.21b.  The
> reason for using this version of Samba is because it is approved by IBM for
> use with Clear-Case.  I have a request with IBM to support version of Samba
> that fixes the :Samba NDR MS-RPC Request Heap-Based Buffer Overflow
> Vulnerability"  that was detected.  If this issue has been resolved, can
> you please let me know which version of  Samba it was fixed, and the
> bugzilla number associated with it.  The information will help IBM
> determine if they are already working on support for that version of Samba,
> or if they have a request to fix the problem.
> 

Hi Dan,

This mailing list is for the in-kernel Linux CIFS client. You're
probably better off asking this question on [email protected].

--
Jeff Layton <[email protected]>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.