[3.3] samba: Remote code execution from a writable share (CVE-2017-7494)
All versions of Samba from 3.5.0 onwards are vulnerable to a remote
code execution vulnerability, allowing a malicious client to upload a
shared library to a writable share, and then cause the server to load
and execute it.
Samba 4.6.4, 4.5.10 and 4.4.14 have been issued as
security releases to correct the defect.
(from redmine: issue id 7323, created on 2017-05-25, closed on 2017-05-25)
- parent #7319 (closed)
- Revision fdb1ee2f by Natanael Copa on 2017-05-25T12:06:17Z:
main/samba: secfix for CVE-2017-7494 fixes #7323