TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Samba 3.5.0+ vulnerability: Remote code execution from a writable share

101 pointsby rivertabout 8 years ago

4 comments

syvanenabout 8 years ago
Info of fixed versions:<p>Debian: <a href="https:&#x2F;&#x2F;security-tracker.debian.org&#x2F;tracker&#x2F;CVE-2017-7494" rel="nofollow">https:&#x2F;&#x2F;security-tracker.debian.org&#x2F;tracker&#x2F;CVE-2017-7494</a><p>Ubuntu: <a href="https:&#x2F;&#x2F;www.ubuntu.com&#x2F;usn&#x2F;usn-3296-1&#x2F;" rel="nofollow">https:&#x2F;&#x2F;www.ubuntu.com&#x2F;usn&#x2F;usn-3296-1&#x2F;</a><p>Red Hat: <a href="https:&#x2F;&#x2F;access.redhat.com&#x2F;security&#x2F;cve&#x2F;CVE-2017-7494" rel="nofollow">https:&#x2F;&#x2F;access.redhat.com&#x2F;security&#x2F;cve&#x2F;CVE-2017-7494</a>
评论 #14412957 未加载
评论 #14419221 未加载
评论 #14411124 未加载
ericfrederichabout 8 years ago
So is this a RCE vulnerability that wouldn&#x27;t be solved by using a memory safe language?<p>Looks like a design issue and not an overflow or something.
评论 #14414175 未加载
mynewtbabout 8 years ago
Is this something new or ETERNALBLUE?
评论 #14410379 未加载
评论 #14410925 未加载
legulereabout 8 years ago
What&#x27;s the vulnerability? C memory unsafety?
评论 #14411022 未加载