EILMELDUNGEN LIVE
🐧 Linux TippsSecurity: Zwei Probleme in libnet-dns-perl (Debian)(23.08.2026 um 01:22 Uhr)
⚠️ PoCCHIRP-CodeExecution_via_Malicious_ImageFile(22.08.2026 um 21:40 Uhr)
🕵️ Sicherheitslückenlinux-exploit-suggester-2(23.08.2026 um 02:12 Uhr)
🔧 AI Nachrichten GitHub Release: cline/cline vdesktop-v0.0.16 (23.08.2026)(23.08.2026 um 01:45 Uhr)
🔧 AI Nachrichten GitHub Release: cline/cline vsdk/sdk/v0.0.78 (23.08.2026)(23.08.2026 um 01:58 Uhr)
🐧 Linux TippsSecurity: Zwei Probleme in libnet-dns-perl (Debian)(23.08.2026 um 01:22 Uhr)
🔧 AI Nachrichten The Developer’s Guide to NeMo Guardrails for Enterprise AI Safety(23.08.2026 um 01:49 Uhr)
⚠️ PoCCHIRP-CodeExecution_via_Malicious_ImageFile(22.08.2026 um 21:40 Uhr)
🕵️ Sicherheitslückenlinux-exploit-suggester-2(23.08.2026 um 02:12 Uhr)
🐧 Linux TippsSecurity: Zwei Probleme in libnet-dns-perl (Debian)(23.08.2026 um 01:22 Uhr)
⚠️ PoCCHIRP-CodeExecution_via_Malicious_ImageFile(22.08.2026 um 21:40 Uhr)
🕵️ Sicherheitslückenlinux-exploit-suggester-2(23.08.2026 um 02:12 Uhr)
🔧 AI Nachrichten GitHub Release: cline/cline vdesktop-v0.0.16 (23.08.2026)(23.08.2026 um 01:45 Uhr)
🔧 AI Nachrichten GitHub Release: cline/cline vsdk/sdk/v0.0.78 (23.08.2026)(23.08.2026 um 01:58 Uhr)
🐧 Linux TippsSecurity: Zwei Probleme in libnet-dns-perl (Debian)(23.08.2026 um 01:22 Uhr)
🔧 AI Nachrichten The Developer’s Guide to NeMo Guardrails for Enterprise AI Safety(23.08.2026 um 01:49 Uhr)
⚠️ PoCCHIRP-CodeExecution_via_Malicious_ImageFile(22.08.2026 um 21:40 Uhr)
🕵️ Sicherheitslückenlinux-exploit-suggester-2(23.08.2026 um 02:12 Uhr)
24 Personen lesen diesen Beitrag gerade 1 Tag Serie
AI Executive Summary • Auf den Punkt gebracht
  • Kernaussage: Die neuesten Entwicklungen und Intelligence-Erkenntnisse im direkten Branchen-Kontext.
  • Bedeutung für die Praxis: Strategische Einordnung für Entscheider, Entwickler und Tech-Interessierte.
  • Ausblick & Trend: Erwartete Markteffekte und nächste Schritte der relevanten Akteure.
🛡️ tsecurity.de IT-Sicherheitsportal & Threat Intelligence
⚡ tsecurity.de Radar
🔒
VERIFIED INTELLIGENCE BRIEFING
Geprüft nach tsecurity.de Cyber-Editorial Standards · 100% DSGVO & Whitelist Compliant
✓ Trust-Score 99.4% myDraft 3.7
📂 20 🕛 kürzlich ⏱️ 2 Min Lesezeit 9 Leser online 🛡️ CVE-RADAR
0

USN-2855-1: Samba vulnerabilities

↗ Quelle (ubuntu.com)
🗣️ Stimme:
📑 Inhaltsübersicht

Ubuntu Security Notice USN-2855-1


5th January, 2016


samba vulnerabilities


A security issue affects these releases of Ubuntu and its
derivatives:


  • Ubuntu 15.10


  • Ubuntu 15.04


  • Ubuntu 14.04 LTS


  • Ubuntu 12.04 LTS


Summary


Several security issues were fixed in Samba.





Software description


  • samba
    - SMB/CIFS file, print, and login server for Unix










Details


Thilo Uttendorfer discovered that the Samba LDAP server incorrectly handled
certain packets. A remote attacker could use this issue to cause the LDAP
server to stop responding, resulting in a denial of service. This issue
only affected Ubuntu 14.04 LTS, Ubuntu 15.04 and Ubuntu 15.10.
(CVE-2015-3223)



Jan Kasprzak discovered that Samba incorrectly handled certain symlinks. A
remote attacker could use this issue to access files outside the exported
share path. (CVE-2015-5252)



Stefan Metzmacher discovered that Samba did not enforce signing when
creating encrypted connections. If a remote attacker were able to perform a
man-in-the-middle attack, this flaw could be exploited to view sensitive
information. (CVE-2015-5296)



It was discovered that Samba incorrectly performed access control when
using the VFS shadow_copy2 module. A remote attacker could use this issue
to access snapshots, contrary to intended permissions. (CVE-2015-5299)



Douglas Bagnall discovered that Samba incorrectly handled certain string
lengths. A remote attacker could use this issue to possibly access
sensitive information. (CVE-2015-5330)



It was discovered that the Samba LDAP server incorrectly handled certain
packets. A remote attacker could use this issue to cause the LDAP server to
stop responding, resulting in a denial of service. This issue only affected
Ubuntu 14.04 LTS, Ubuntu 15.04 and Ubuntu 15.10. (CVE-2015-7540)



Andrew Bartlett discovered that Samba incorrectly checked administrative
privileges during creation of machine accounts. A remote attacker could
possibly use this issue to bypass intended access restrictions in certain
environments. This issue only affected Ubuntu 14.04 LTS, Ubuntu 15.04 and
Ubuntu 15.10. (CVE-2015-8467)



Update instructions


The problem can be corrected by updating your system to the following
package version:


Ubuntu 15.10:




samba

2:4.1.17+dfsg-4ubuntu3.1





Ubuntu 15.04:




samba

2:4.1.13+dfsg-4ubuntu3.1





Ubuntu 14.04 LTS:




samba

2:4.1.6+dfsg-1ubuntu2.14.04.11





Ubuntu 12.04 LTS:




samba

2:3.6.3-2ubuntu2.13





To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.


In general, a standard system update will make all the necessary changes.





References




CVE-2015-3223,

CVE-2015-5252,

CVE-2015-5296,

CVE-2015-5299,

CVE-2015-5330,

CVE-2015-7540,

CVE-2015-8467


🛡️ Verifizierte Primärquelle: ubuntu.com
✓ Geprüfter Threat Feed
📊 1.076 kuratierte Meldungen 🏛️ Archiviert seit -0001 🔒 DSGVO-konform gespiegelt
Dieser Beitrag wurde automatisiert aggregiert, semantisch validiert und volltext-indiziert.
0% · ~2 Min
💡 Wie bewertest du diesen Beitrag?
1 Klick Feedback
174 Fachleser & IT-Security Experten haben diesen Report heute geteilt
🔗 Teilen mit Netzwerk & Team:
✍️

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf „✍️ Eigene Analyse verfassen“!
📊 Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 35%
🟡 In Evaluierung 20%
🟢 Keine Auswirkung 17%
💡 Spannende Innovation 28%
⚡ Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
2 Quellen
Security: Zwei Probleme in libnet-dns-perl (Debian)
2 Quellen
GitHub Release: cline/cline vdesktop-v0.0.16 (23.08.2026)
1 Quelle
CHIRP-CodeExecution_via_Malicious_ImageFile
Ähnliche Beiträge
🔍 Verwandte News
🔗

Ähnliche Beiträge zu USN-2855-1: Samba vulnerabilities

Thematisch verwandte Begriffe: USN28551, Samba, vulnerabilities · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

⭐ Bewertung wird geladen…