[LWN Logo]
[LWN.net]
Date:         Tue, 17 Apr 2001 18:40:31 -0700
From: Chris Wright <chris@WIREX.COM>
Subject:      Immunix OS Security update for samba
To: BUGTRAQ@SECURITYFOCUS.COM

--rS8CxjVDS/+yyDmU
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

-----------------------------------------------------------------------
	Immunix OS Security Advisory

Packages updated:	samba
Affected products:	Immunix OS 6.2, 7.0-beta, and 7.0
Bugs Fixed:		immunix/1564
Date:			April 17, 2001
Advisory ID:		IMNX-2001-70-016-01
Author:			Greg Kroah-Hartman <greg@wirex.com>
-----------------------------------------------------------------------

Description:
  Marcus Meissner has found a temp file race with the current versions
  of samba.  This could allow any local malicious user to get
  administrator privileges on a machine running samba.

  The following packages fix this problem.

Package names and locations:

  Precompiled binary packages for Immunix 6.2 are available at:
    http://immunix.org/ImmunixOS/6.2/updates/RPMS/samba-2.0.7-22_6.x_imnx_2.i386.rpm
    http://immunix.org/ImmunixOS/6.2/updates/RPMS/samba-client-2.0.7-22_6.x_imnx_2.i386.rpm
    http://immunix.org/ImmunixOS/6.2/updates/RPMS/samba-common-2.0.7-22_6.x_imnx_2.i386.rpm

  Source package for Immunix 6.2 is available at:
    http://immunix.org/ImmunixOS/6.2/updates/SRPMS/samba-2.0.7-22_6.x_imnx_2.src.rpm

  Precompiled binary packages for Immunix 7.0-beta and 7.0 are available at:
    http://immunix.org/ImmunixOS/7.0/updates/RPMS/samba-2.0.7-22_imnx_2.i386.rpm
    http://immunix.org/ImmunixOS/7.0/updates/RPMS/samba-client-2.0.7-22_imnx_2.i386.rpm
    http://immunix.org/ImmunixOS/7.0/updates/RPMS/samba-common-2.0.7-22_imnx_2.i386.rpm

  Source package for Immunix 7.0-beta and 7.0 is available at:
    http://immunix.org/ImmunixOS/7.0/updates/SRPMS/samba-2.0.7-22_imnx_2.src.rpm


md5sums of the packages:
  8ceb6938ab236d53ea48e471204e7b6d  samba-2.0.7-22_6.x_imnx_2.i386.rpm
  9b4b2919ec8114e342fd363a882024fc  samba-client-2.0.7-22_6.x_imnx_2.i386.rpm
  cc6b42cc017376ad602fd5bfed30f8cd  samba-common-2.0.7-22_6.x_imnx_2.i386.rpm
  da2e9b29ad69d420826b434bd9b3351f  samba-2.0.7-22_6.x_imnx_2.src.rpm

  714b6fa5be75307ba0cff1b022accee4  samba-2.0.7-22_imnx_2.i386.rpm
  18d9518976cccfd038486443eff1f5e4  samba-client-2.0.7-22_imnx_2.i386.rpm
  1dae628dfd2a58194d8b722f7ed0b16c  samba-common-2.0.7-22_imnx_2.i386.rpm
  01aabada9c4069c54ce4e8ea32b410ad  samba-2.0.7-22_imnx_2.src.rpm


Online version of all Immunix 6.2 updates and advisories:
  http://immunix.org/ImmunixOS/6.2/updates/

Online version of all Immunix 7.0-beta updates and advisories:
  http://immunix.org/ImmunixOS/7.0-beta/updates/

Online version of all Immunix 7.0 updates and advisories:
  http://immunix.org/ImmunixOS/7.0/updates/

NOTE:
  Ibiblio is graciously mirroring our updates, so if the links above are
  slow, please try:
    ftp://ftp.ibiblio.org/pub/Linux/distributions/immunix/
  or one of the many mirrors available at:
    http://www.ibiblio.org/pub/Linux/MIRRORS.html


--rS8CxjVDS/+yyDmU
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.4 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE63PCNqX2UekFdhDkRAjSLAJ9b7AXZLqqmkJDLlLKhJ72844xnPQCeLoC7
hn2K8RL5I8rCEWuuyAOJNd4=
=OXaj
-----END PGP SIGNATURE-----

--rS8CxjVDS/+yyDmU--