[Samba] [SECURITY] Samba 3.0.1 - 3.0.22: memory exhaustion DoSagainst smbd

Gerald (Jerry) Carter jerry at samba.org
Tue Jul 11 14:54:49 GMT 2006


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Guillermo Gutierrez wrote:

> (Blond-moment question) I take it then, that this 
> bug doesn't apply to version 3.0.23?

Actually, you are the second person to ask me this. :-)

I thought that since both the security and release
announcement can from me, it would be obvious.

But if not, the fix was listed in the commits
between 3.0.23rc3 and 3.0.23 in the release notes

o   Volker Lendecke <vl at samba.org>
    .....
    * CVE-2006-3403: Fix minor memory exhaustion DoS in smbd.

So this confirms once again that no one reads the
release notes.





cheers, jerry
=====================================================================
Samba                                    ------- http://www.samba.org
Centeris                         -----------  http://www.centeris.com
"What man is a man who does not make the world better?"      --Balian
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2 (GNU/Linux)
Comment: Using GnuPG with SUSE - http://enigmail.mozdev.org

iD8DBQFEs7u5IR7qMdg1EfYRAjaBAKCfRYDj5LRDDeL2zAhd34a5JuaSCgCgnPEx
qMoze9RYT/7A+23KWRIm4IM=
=Odje
-----END PGP SIGNATURE-----


More information about the samba mailing list