Summary
The remote host is missing an update to samba
announced via advisory MDVSA-2009:042.
Solution
To upgrade automatically use MandrakeUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.
https://secure1.securityspace.com/smysecure/catid.html?in=MDVSA-2009:042
Insight
Samba 3.2.0 through 3.2.6, when registry shares are enabled, allows remote authenticated users to access the root filesystem via a crafted connection request that specifies a blank share name (CVE-2009-0022).
This update provides samba 3.2.7 to address this issue.
Affected: 2009.0
Severity
Classification
-
CVE CVE-2009-0022 -
CVSS Base Score: 6.3
AV:N/AC:M/Au:S/C:C/I:N/A:N
Related Vulnerabilities