Novell Home

CVE-2013-4408

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2013-4408 at MITRE

Description

Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote AD domain controllers to execute arbitrary code via an invalid fragment length in a DCE-RPC packet.

NVD CVSS v2 Base Score: 8.3 (AV:A/AC:L/Au:N/C:C/I:C/A:C)

Novell/SUSE information

Note from the SUSE Security Team

This only affects Samba versions 3.4 and higher, so SUSE Linux Enterprise 10 and older products are not affected.

Novell Bugzilla entries: 844720, 848101, 882906

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SLE 11 SP1 DEBUGINFO
  • samba-debuginfo >= 3.4.3-1.52.3
  • samba-debugsource >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SLE 11 SP1 DEBUGINFO
  • samba-debuginfo >= 3.4.3-1.52.3
  • samba-debuginfo-32bit >= 3.4.3-1.52.3
  • samba-debugsource >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SUSE Linux Enterprise Server 11 SP1 LTSS
  • cifs-mount >= 3.4.3-1.52.3
  • ldapsmb >= 1.34b-11.28.52.3
  • libsmbclient0 >= 3.4.3-1.52.3
  • libtalloc1 >= 3.4.3-1.52.3
  • libtdb1 >= 3.4.3-1.52.3
  • libwbclient0 >= 3.4.3-1.52.3
  • samba >= 3.4.3-1.52.3
  • samba-client >= 3.4.3-1.52.3
  • samba-doc >= 3.4.3-1.52.3
  • samba-krb-printing >= 3.4.3-1.52.3
  • samba-winbind >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SUSE Linux Enterprise Server 11 SP1 LTSS
  • cifs-mount >= 3.4.3-1.52.3
  • ldapsmb >= 1.34b-11.28.52.3
  • libsmbclient0 >= 3.4.3-1.52.3
  • libsmbclient0-32bit >= 3.4.3-1.52.3
  • libtalloc1 >= 3.4.3-1.52.3
  • libtalloc1-32bit >= 3.4.3-1.52.3
  • libtdb1 >= 3.4.3-1.52.3
  • libtdb1-32bit >= 3.4.3-1.52.3
  • libwbclient0 >= 3.4.3-1.52.3
  • libwbclient0-32bit >= 3.4.3-1.52.3
  • samba >= 3.4.3-1.52.3
  • samba-32bit >= 3.4.3-1.52.3
  • samba-client >= 3.4.3-1.52.3
  • samba-client-32bit >= 3.4.3-1.52.3
  • samba-doc >= 3.4.3-1.52.3
  • samba-krb-printing >= 3.4.3-1.52.3
  • samba-winbind >= 3.4.3-1.52.3
  • samba-winbind-32bit >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SLE 11 SP2 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.33.39.1
  • samba-debugsource >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SLE 11 SP2 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.33.39.1
  • samba-debuginfo-x86 >= 3.6.3-0.33.39.1
  • samba-debugsource >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SLE 11 SP2 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.33.39.1
  • samba-debuginfo-32bit >= 3.6.3-0.33.39.1
  • samba-debugsource >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libldb-devel >= 3.6.3-0.33.39.1
  • libnetapi-devel >= 3.6.3-0.33.39.1
  • libnetapi0 >= 3.6.3-0.33.39.1
  • libsmbclient-devel >= 3.6.3-0.33.39.1
  • libsmbsharemodes-devel >= 3.6.3-0.33.39.1
  • libsmbsharemodes0 >= 3.6.3-0.33.39.1
  • libtalloc-devel >= 3.6.3-0.33.39.1
  • libtdb-devel >= 3.6.3-0.33.39.1
  • libtevent-devel >= 3.6.3-0.33.39.1
  • libwbclient-devel >= 3.6.3-0.33.39.1
  • samba-devel >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Desktop 11 SP2
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Desktop 11 SP2
  • libldb1 >= 3.6.3-0.33.39.1
  • libldb1-32bit >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-32bit >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-32bit >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-32bit >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-32bit >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libtevent0-32bit >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-32bit >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-32bit >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-32bit >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-32bit >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2 for VMware
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2 for VMware
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-32bit >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-32bit >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-32bit >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-32bit >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libtevent0-32bit >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-32bit >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-32bit >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-32bit >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-32bit >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-x86 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-x86 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-x86 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-x86 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-x86 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-x86 >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-x86 >= 3.6.3-0.33.39.1
  • samba-x86 >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SLE 11 SP3 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.46.1
  • samba-debugsource >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SLE 11 SP3 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.46.1
  • samba-debuginfo-x86 >= 3.6.3-0.46.1
  • samba-debugsource >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SLE 11 SP3 DEBUGINFO
  • samba-debuginfo >= 3.6.3-0.46.1
  • samba-debuginfo-32bit >= 3.6.3-0.46.1
  • samba-debugsource >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Software Development Kit 11 SP3
  • libldb-devel >= 3.6.3-0.46.1
  • libnetapi-devel >= 3.6.3-0.46.1
  • libnetapi0 >= 3.6.3-0.46.1
  • libsmbclient-devel >= 3.6.3-0.46.1
  • libsmbsharemodes-devel >= 3.6.3-0.46.1
  • libsmbsharemodes0 >= 3.6.3-0.46.1
  • libtalloc-devel >= 3.6.3-0.46.1
  • libtdb-devel >= 3.6.3-0.46.1
  • libtevent-devel >= 3.6.3-0.46.1
  • libwbclient-devel >= 3.6.3-0.46.1
  • samba-devel >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Desktop 11 SP3
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Desktop 11 SP3
  • libldb1 >= 3.6.3-0.46.1
  • libldb1-32bit >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-32bit >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-32bit >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-32bit >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libtevent0-32bit >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-32bit >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-32bit >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-32bit >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-32bit >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-32bit >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-32bit >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-32bit >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libtevent0-32bit >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-32bit >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-32bit >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-32bit >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-32bit >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-x86 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-x86 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-x86 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-x86 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-x86 >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-x86 >= 3.6.3-0.46.1
  • samba-x86 >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655

© 2014 Novell