[oe-commits] Chong.Lu at windriver.com : samba: Security Advisory - CVE-2013-4496

git at git.openembedded.org git at git.openembedded.org
Sat Jun 21 09:38:59 UTC 2014


Module: meta-openembedded.git
Branch: master-next
Commit: ba9ab82133d1a8987c178201ac824ec6b5251dd4
URL:    http://git.openembedded.org/?p=meta-openembedded.git&a=commit;h=ba9ab82133d1a8987c178201ac824ec6b5251dd4

Author: Chong.Lu at windriver.com <Chong.Lu at windriver.com>
Date:   Fri Jun 13 14:12:54 2014 +0800

samba: Security Advisory - CVE-2013-4496

Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6
does not enforce the password-guessing protection mechanism for all
interfaces, which makes it easier for remote attackers to obtain access
via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-4496

Signed-off-by: Yue Tao <Yue.Tao at windriver.com>
Signed-off-by: Chong Lu <Chong.Lu at windriver.com>
Signed-off-by: Martin Jansa <Martin.Jansa at gmail.com>

---

 .../samba/samba/samba-3.6.22-CVE-2013-4496.patch   | 966 +++++++++++++++++++++
 meta-oe/recipes-connectivity/samba/samba_3.6.8.bb  |   1 +
 2 files changed, 967 insertions(+)

Diff:   http://git.openembedded.org/?p=meta-openembedded.git/?a=commitdiff;h=ba9ab82133d1a8987c178201ac824ec6b5251dd4


More information about the Openembedded-commits mailing list