Bugzilla – Bug 40140
VUL-0: CVE-2003-0085: samba: remote root exploit
Last modified: 2017-04-20 14:50:38 UTC
A remote root exploit weas found by the SuSE Security Team. Fixes for 2.2.7a are available.
<!-- SBZ_reproduce --> No exploit is currently available.
Will we get the fix for the beta5 deadline tonight?
Yes.
Fixed for STABLE. Move bug to UL1.
Move back to SL as additional patches have to be added.
Fixed for all versions.
I think this bug covers both CVE-2003-0085 Buffer overflow in the SMB/CIFS packet fragment re-assembly code for SMB daemon (smbd) in Samba before 2.2.8, and Samba-TNG before 0.3.1, allows remote attackers to execute arbitrary code. and CVE-2003-0086 The code for writing reg files in Samba before 2.2.8 allows local users to overwrite arbitrary files via a race condition involving chown.