View Single Post
Old 12-08-2003, 23:25   #92
BenH
Inactive
 
Join Date: Jul 2003
Location: South Manchester
Posts: 74
BenH is an unknown quantity at this point
Quote:
Originally posted by hawkmoon

As for the advisory in Samba - you can find it here. https://rhn.redhat.com/errata/RHSA-2003-137.html

Samba versions above 2.2.8 don't have this exploit. [/B]
Looks like it was RH only. SuSE have a similar advisory, but instead detail it to be a buffer overrun with the possibility that it might be publically available. With a mention of the weak encryption generated by a VNC cookie that is well known.

Hardly an internet stopper, but something to keep an eye on.

Thanks,

Ben
BenH is offline   Reply With Quote