Debian 10225 Published by

New samba packages has been released for Debian GNU/Linux to fix a buffer overflow



[SECURITY] [DSA-2109-1] New samba packages fix buffer overflow
- ------------------------------------------------------------------------
Debian Security Advisory DSA-2109-1 security@debian.org
Stefan Fritsch
September 16, 2010 Debian -- Debian security FAQ
- ------------------------------------------------------------------------

Package : samba
Vulnerability : buffer overflow
Problem type : remote
Debian-specific: no
CVE Id(s) : CVE-2010-3069
Debian bug : 596891


A vulnerability has been discovered in samba, a SMB/CIFS file, print,
and login server for Unix.

The sid_parse() function does not correctly check its input lengths
when reading a binary representation of a Windows SID (Security ID).
This allows a malicious client to send a sid that can overflow the
stack variable that is being used to store the SID in the Samba smbd
server. (CVE-2010-3069)

For the stable distribution (lenny), this problem has been fixed in
version 3.2.5-4lenny13.

For the testing distribution (squeeze) and the unstable distribution (sid),
this problem will be fixed in version 3.5.5~dfsg-1.

We recommend that you upgrade your samba packages. The packages for the
mips architecture are not included in this upgrade. They will be released
as soon as they become available.

Upgrade instructions
- --------------------

wget url
will fetch the file for you
dpkg -i file.deb
will install the referenced file.

If you are using the apt-get package manager, use the line for
sources.list as given below:

apt-get update
will update the internal database
apt-get upgrade
will install corrected packages

You may use an automated update by adding the resources from the
footer to the proper configuration.

Debian GNU/Linux 5.0 alias lenny (stable)
- -----------------------------------------

Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.

Source archives:


Size/MD5 checksum: 1834 eca5531616077567a13aa70c77c24930

Size/MD5 checksum: 50276407 0f7539e09803ae60a2912e70adf1c747

Size/MD5 checksum: 238904 69d9df4c5fd03523273a58464326d0fb

Architecture independent packages:


Size/MD5 checksum: 6252920 302863fb9b5611992881228e1d3c0fec

Size/MD5 checksum: 7949970 de6f2284630f59ca11c79a87d7f5cd37

alpha architecture (DEC Alpha)


Size/MD5 checksum: 637700 c41437b466eacc9ce13f9927f0e9852d

Size/MD5 checksum: 2573608 1a9676f80e510842a6fc86da6a91b899

Size/MD5 checksum: 3269896 f330c809c6486b02fed3eed42c4cbd9e

Size/MD5 checksum: 1948232 20825562722fe3cb30f700b965bd73c2

Size/MD5 checksum: 81782 3d389a482f79dd4c89b2347172b0d686

Size/MD5 checksum: 3730994 3d05cb0edd68b953914fd35a98d9a682

Size/MD5 checksum: 1462724 f90caf4c588dfa6dbb79e8bbe8fc0b06

Size/MD5 checksum: 5735060 45ac8e96f769c76e11e2593a8081d618

Size/MD5 checksum: 4832734 6b399772ff085ca7c930c8f3242f41cb

Size/MD5 checksum: 1333652 ff93a9e6efd379b3feff79d1c5c2346d

Size/MD5 checksum: 1080332 b089287b8511b1d49bc12535729d5d58

Size/MD5 checksum: 6954438 c77f399019586c78105821e8d985274c

amd64 architecture (AMD x86_64 (AMD64))


Size/MD5 checksum: 1494510 87442b7933664fb9d73318ebf90af8c8

Size/MD5 checksum: 1081750 9ccbd9bd226bc00c60d31b6e36b7b093

Size/MD5 checksum: 5650066 7801cfc7e54ca821cc1da95817aa8eee

Size/MD5 checksum: 4779646 58fbb8734ff2c1fbf70653ca5b5d7bb1

Size/MD5 checksum: 3279692 a5aa655a9396bf5fc45cae9b6d67a7c3

Size/MD5 checksum: 628590 726d6c35ae2ca9cc81e3d1bf479a1e09

Size/MD5 checksum: 3737856 178c562248f9aed8859eb946f20c0c17

Size/MD5 checksum: 1997888 3c84a720dc194a4f57e86704fbc109a9

Size/MD5 checksum: 7005802 87724542fa5bac36cf745c05d7ed37b6

Size/MD5 checksum: 80758 95fd31f32f16025b77891483840504e8

Size/MD5 checksum: 1954846 58351b67953c88788196350cb8ad87ca

Size/MD5 checksum: 1358418 0ecc57121f01984609313669657ca4d8

arm architecture (ARM)


Size/MD5 checksum: 6174390 6e4ff803e8571ed6c61fdb43a4b3b1df

Size/MD5 checksum: 2888216 43cc1c3ab888a8bb6650a815052b7683

Size/MD5 checksum: 972908 bc35f7f6332ffdf15903ff54f6f6e288

Size/MD5 checksum: 1818490 79f4280043a7f41b7811e0bed826d961

Size/MD5 checksum: 5041332 1672bd16c3923bd517c934901dec70c8

Size/MD5 checksum: 1315222 ca71c5a576ec771dce1dca6058f5f87c

Size/MD5 checksum: 3353606 5fd84e9206b5b2dab8b32a163cd9580e

Size/MD5 checksum: 2398232 4bcdcc0b28f62aac8844fea3e67f7691

Size/MD5 checksum: 79180 1f7f29902f6fcd968a573be7ecb36731

Size/MD5 checksum: 560350 f86ae064c14fabcaf0313a5c18f5bd93

Size/MD5 checksum: 4267828 6e559cadf561bda3b84eeef4ae0dae26

Size/MD5 checksum: 1204658 436d19fd083ee30c564f7f601bb6a575

armel architecture (ARM EABI)


Size/MD5 checksum: 6217016 ca25b3397f58128bf13507ff4ac65b74

Size/MD5 checksum: 1210962 de5e7f8835d7d78b4b760117c85957aa

Size/MD5 checksum: 2429156 17b846fcc41bd03023fc241c5ffeb947

Size/MD5 checksum: 563980 f7c8301c5854321944c838a528b8f40d

Size/MD5 checksum: 79008 459f42fbc18b27785e266c94a2490e8a

Size/MD5 checksum: 1825170 995387619487520681014dc21948991a

Size/MD5 checksum: 3367450 ce4ca60a5b514b3bea27a045061af8b8

Size/MD5 checksum: 1324528 8431839800ac34bb70831f064421ddb3

Size/MD5 checksum: 4295800 fcc79dc2f504f9ee1bf226a7e9aa62c6

Size/MD5 checksum: 974340 a62c0a61c73b3f1b4fa7fad67f4dc334

Size/MD5 checksum: 2911248 60e78a6fa74431fb408d206073be6645

Size/MD5 checksum: 5071022 224497c738135f66ce0a4850e3041f30

hppa architecture (HP PA RISC)


Size/MD5 checksum: 1375896 fbbec8736c733f5dd1b61734714569fd

Size/MD5 checksum: 1416096 f280da05275b01fed51ea15bea20fae9

Size/MD5 checksum: 6689268 5f3c06d7e9f4f7dacd86aed9ef67daa7

Size/MD5 checksum: 3175210 ac748a8326a41281337bbb120ae3d473

Size/MD5 checksum: 2227272 c926ec0476b22f30fdee3bdd02928235

Size/MD5 checksum: 2063000 895e64ff7d67cc99707f3d0e865c36f3

Size/MD5 checksum: 3607062 74a72877bc444d5004869e7dd739f794

Size/MD5 checksum: 632520 d8d9c0e8e34657c1191d0b4c4dfc8e79

Size/MD5 checksum: 4653028 ce1d89769ecb4f936da08e275aab3de3

Size/MD5 checksum: 81308 4a517daa7687f8b68e55739fc29d596a

Size/MD5 checksum: 1049354 0b8b7e87437b0d64ac3dbf08d5a7e4f5

Size/MD5 checksum: 5498956 78c1bc597e3204c35947ee96cb048318

i386 architecture (Intel ia32)


Size/MD5 checksum: 6302812 6ab9c65baff46fca37ddee4c3bdd09c5

Size/MD5 checksum: 4297024 d28f3ace38105747ad719c22254758dd

Size/MD5 checksum: 1200722 156290d3f0ea060e8efa71f08478a052

Size/MD5 checksum: 79724 22ed052c45d5d928e08c39a6f77d4468

Size/MD5 checksum: 5069758 03783d93e2684d3f5e6791e42e5c2779

Size/MD5 checksum: 3413978 04e0ec798efef16f5f4f85d531460c6a

Size/MD5 checksum: 1824284 c65a5658663cf3a5bb80be2d4b4127ee

Size/MD5 checksum: 1350902 bda07566b5f6ad865b1428207885204f

Size/MD5 checksum: 561444 cf09580878d82001e9e61b7f1d1f0441

Size/MD5 checksum: 2931680 d911e6518136d2ec50f3f2fc1967d3d7

Size/MD5 checksum: 985474 3d3c29b7a86950db1cc8d85c16d71df6

Size/MD5 checksum: 2078438 6f7f4d608573922221da2225bfbe6f36

ia64 architecture (Intel ia64)


Size/MD5 checksum: 4383218 d78eb833188efae2d6a52c147afd30c6

Size/MD5 checksum: 5831740 a947f6258832e75f6113636d1d9d9807

Size/MD5 checksum: 3916304 6a6eebc30cb8dce7023abeff68a1a2d8

Size/MD5 checksum: 84228 0eaf9281dc6d6d12d082e1144086c68d

Size/MD5 checksum: 8295154 f57a750b822a52a2b1698549f91b18e2

Size/MD5 checksum: 6933368 fbddb9a8651f32090580260a2c80b4da

Size/MD5 checksum: 1561258 150cc4fce9040c89788645a0305d2e83

Size/MD5 checksum: 752282 3fc3027c9d35e3ca5f4f58a2f2517614

Size/MD5 checksum: 1276184 87659795ec42615f2b33b45f6bb79d8c

Size/MD5 checksum: 2400790 53bcda435c96dc9e8beabe4f5571be56

Size/MD5 checksum: 1936586 75fcdb5261f5723fc23ac65971738175

Size/MD5 checksum: 1721482 62f2aa09777da60e5020def718d4b395

mipsel architecture (MIPS (Little Endian))


Size/MD5 checksum: 2793858 f11a0d2195eb6ddee1a0a90cf68e7f47

Size/MD5 checksum: 2128862 e32b8ccc09eaf4e3f722630cea611228

Size/MD5 checksum: 4967944 86a22cc4c38ee5fb6454bbee992874e8

Size/MD5 checksum: 1082144 ac5f46d2a9a5f7a3b2e1ed9866fc064e

Size/MD5 checksum: 569804 7963fdc85374a7188d93a9a0bf87607e

Size/MD5 checksum: 2390796 48b168801f67ea7ea1a7539b5a06b2a7

Size/MD5 checksum: 4178596 d729e758f829b69338af83e90b12c53f

Size/MD5 checksum: 1197128 46bde2626f9558c2efb2ce6b42818c1c

Size/MD5 checksum: 79724 dde4cc44b2715472ebecff2d0264ca22

Size/MD5 checksum: 937432 e4d6f7bf115d3fc9d23f2a66d8fda3ad

Size/MD5 checksum: 3219980 b821e87ce48dfd2b84cd2e8174fd9e2f

Size/MD5 checksum: 5801456 b01cd2fb72f8d82553840610df5800e3

powerpc architecture (PowerPC)


Size/MD5 checksum: 4405358 5bab1c5e13851eb1b56bf3e59d9e7af5

Size/MD5 checksum: 1240284 d534e826a2e31dfcd41b70b21c1cbb9f

Size/MD5 checksum: 596430 e56977c9c92cdf6c9ca283e660304352

Size/MD5 checksum: 5189084 3da08b000ac3b09ae30541ca2c979fa1

Size/MD5 checksum: 80662 b8cb23121ca5ed4ff49cf95fdad1d08e

Size/MD5 checksum: 1713922 c7a117211fa8353bfac218491a419c4d

Size/MD5 checksum: 3429610 ea15d98d45698214cbf02b0751f50867

Size/MD5 checksum: 6295954 817732a3c58ad8ba18113e1c7d58f8ce

Size/MD5 checksum: 986584 38c7f2dca8ff32b5414cad694c1ba091

Size/MD5 checksum: 2078214 a841672709f8d24985543ce6f363ac7a

Size/MD5 checksum: 2989078 97447dda6c4c451c6007cbb1b8b8584f

Size/MD5 checksum: 1335944 fcaf51292edb00bc96c20c6de73b24ea

s390 architecture (IBM S/390)


Size/MD5 checksum: 643220 4853c0ead6cf9a070f69ce106c7ba5f6

Size/MD5 checksum: 3656526 8c7935e5a953e88b262b31ed757fd085

Size/MD5 checksum: 1937182 78a4d6845ff499a258034bfedece6742

Size/MD5 checksum: 3203418 4f7df91d8e5e43ffa7efe122da2bdbaa

Size/MD5 checksum: 5647618 7f8142fd058f6e1f7b843452fed15328

Size/MD5 checksum: 1258794 f4b7629afffefc6dd2bce3408c5b96a4

Size/MD5 checksum: 4739920 614c87ddf822839236c0f9e17be9babe

Size/MD5 checksum: 1057438 a9e232411499718aba247d9f27e1058a

Size/MD5 checksum: 6704314 d2cfc8e6f0f6ad4b7d1cd834c055faed

Size/MD5 checksum: 81556 de171624ef3e97cf02b1f74dd8f02d90

Size/MD5 checksum: 2059300 abf4be8133208273b01ed0a99a35dd31

Size/MD5 checksum: 1391984 9938e98d64fa11e2ab44f121c21db5ce

sparc architecture (Sun SPARC/UltraSPARC)


Size/MD5 checksum: 6174312 79e47f5fe7734268e98eee617c1b4834

Size/MD5 checksum: 976010 b1652e3b25676801072b5301bd91a135

Size/MD5 checksum: 2927118 1a126f4c316911fdf5135b4422652427

Size/MD5 checksum: 2025618 798b3c5351add8dc7bac71268740014b

Size/MD5 checksum: 3375874 8dc1309548a0846b704ed7a930d10d93

Size/MD5 checksum: 1996452 c6b51fb4a7f4e22f7776fee128cbd778

Size/MD5 checksum: 581854 788aed226aad2d593761c5713b10b050

Size/MD5 checksum: 5111832 31f808a6dc918a321aaa0ab3851ebeaf

Size/MD5 checksum: 1304562 47746b45d27279b10bb341addec4c50c

Size/MD5 checksum: 79054 a7810d65e75a7b758f3e7100356ce19e

Size/MD5 checksum: 1202248 caa7d1591ec1a9d2324ea7d88da2fc9e

Size/MD5 checksum: 4322400 e7c417db27b4ee3f2da9af0ef4796287


These files will probably be moved into the stable distribution on
its next update.