SB2011072901 - Multiple vulnerabilities in Samba
Published: July 29, 2011 Updated: April 29, 2021
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 2 secuirty vulnerabilities.
1) Cross-site request forgery (CVE-ID: CVE-2011-2522)
The vulnerability allows a remote attacker to perform cross-site request forgery attacks.
The vulnerability exists due to insufficient validation of the HTTP request origin. A remote attacker can trick the victim to visit a specially crafted web page and perform arbitrary actions on behalf of the victim on the vulnerable website.
2) Cross-site scripting (CVE-ID: CVE-2011-2694)
Vulnerability allows a remote attacker to perform XSS attacks.
The vulnerability is caused by an input validation error in the chg_passwd function in web/swat.c in the Samba Web Administration Tool (SWAT) in Samba 3.x before 3.5.10. A remote authenticated attacker can trick the victim to follow a specially crafted link and execute arbitrary HTML and script code in victim's browser in security context of vulnerable website.
Successful exploitation of this vulnerability may allow a remote attacker to steal potentially sensitive information, change appearance of the web page, perform phishing and drive-by-download attacks.
Remediation
Install update from vendor's website.
References
- http://jvn.jp/en/jp/JVN29529126/index.html
- http://marc.info/?l=bugtraq&m=133527864025056&w=2
- http://osvdb.org/74071
- http://samba.org/samba/history/samba-3.5.10.html
- http://secunia.com/advisories/45393
- http://secunia.com/advisories/45488
- http://secunia.com/advisories/45496
- http://securityreason.com/securityalert/8317
- http://securitytracker.com/id?1025852
- http://ubuntu.com/usn/usn-1182-1
- http://www.debian.org/security/2011/dsa-2290
- http://www.exploit-db.com/exploits/17577
- http://www.itrc.hp.com/service/cki/docDisplay.do?docId=emr_na-c03008543
- http://www.mandriva.com/security/advisories?name=MDVSA-2011:121
- http://www.samba.org/samba/security/CVE-2011-2522
- http://www.securityfocus.com/bid/48899
- https://bugzilla.redhat.com/show_bug.cgi?id=721348
- https://bugzilla.samba.org/show_bug.cgi?id=8290
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68843
- http://jvn.jp/en/jp/JVN63041502/index.html
- http://osvdb.org/74072
- http://www.samba.org/samba/security/CVE-2011-2694
- http://www.securityfocus.com/bid/48901
- https://bugzilla.redhat.com/show_bug.cgi?id=722537
- https://bugzilla.samba.org/show_bug.cgi?id=8289
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68844