RHSA-2015:0249-1: Critical: samba3x security update

Red Hat Enterprise Linux: Updated samba3x packages that fix one security issue are now available for
Red Hat Enterprise Linux 5.

Red Hat Product Security has rated this update as having Critical security
impact. A Common Vulnerability Scoring System (CVSS) base score, which
gives a detailed severity rating, is available from the CVE link in the
References section.
CVE-2015-0240

USN-2507-1: e2fsprogs vulnerabilities

Ubuntu Security Notice USN-2507-1

23rd February, 2015

e2fsprogs vulnerabilities

A security issue affects these releases of Ubuntu and its
derivatives:

  • Ubuntu 14.10
  • Ubuntu 14.04 LTS
  • Ubuntu 12.04 LTS
  • Ubuntu 10.04 LTS

Summary

e2fsprogs could be made to crash or run programs as an administrator
if it processed a specially crafted filesystem image.

Software description

  • e2fsprogs
    – ext2/ext3/ext4 file system utilities

Details

Jose Duart discovered that e2fsprogs incorrectly handled invalid block
group descriptor data. A local attacker could use this issue with a
crafted filesystem image to possibly execute arbitrary code.
(CVE-2015-0247, CVE-2015-1572)

Update instructions

The problem can be corrected by updating your system to the following
package version:

Ubuntu 14.10:
e2fsprogs

1.42.10-1.1ubuntu1.2
Ubuntu 14.04 LTS:
e2fsprogs

1.42.9-3ubuntu1.2
Ubuntu 12.04 LTS:
e2fsprogs

1.42-1ubuntu2.2
Ubuntu 10.04 LTS:
e2fsprogs

1.41.11-1ubuntu2.3

To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.

In general, a standard system update will make all the necessary changes.

References

CVE-2015-0247,

CVE-2015-1572

USN-2508-1: Samba vulnerability

Ubuntu Security Notice USN-2508-1

23rd February, 2015

samba vulnerability

A security issue affects these releases of Ubuntu and its
derivatives:

  • Ubuntu 14.10
  • Ubuntu 14.04 LTS
  • Ubuntu 12.04 LTS

Summary

Samba could be made to run programs as an administrator if it received
specially crafted network traffic.

Software description

  • samba
    – SMB/CIFS file, print, and login server for Unix

Details

Richard van Eeden discovered that the Samba smbd file services incorrectly
handled memory. A remote attacker could use this issue to possibly execute
arbitrary code with root privileges.

Update instructions

The problem can be corrected by updating your system to the following
package version:

Ubuntu 14.10:
samba

2:4.1.11+dfsg-1ubuntu2.2
Ubuntu 14.04 LTS:
samba

2:4.1.6+dfsg-1ubuntu2.14.04.7
Ubuntu 12.04 LTS:
samba

2:3.6.3-2ubuntu2.12

To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.

In general, a standard system update will make all the necessary changes.

References

CVE-2015-0240

USN-2509-1: ca-certificates update

Ubuntu Security Notice USN-2509-1

23rd February, 2015

ca-certificates update

A security issue affects these releases of Ubuntu and its
derivatives:

  • Ubuntu 14.10
  • Ubuntu 14.04 LTS
  • Ubuntu 12.04 LTS
  • Ubuntu 10.04 LTS

Summary

ca-certificates was updated to the 20141019 package.

Software description

  • ca-certificates
    – Common CA certificates

Details

The ca-certificates package contained outdated CA certificates. This update
refreshes the included certificates to those contained in the 20141019
package.

Update instructions

The problem can be corrected by updating your system to the following
package version:

Ubuntu 14.10:
ca-certificates

20141019ubuntu0.14.10.1
Ubuntu 14.04 LTS:
ca-certificates

20141019ubuntu0.14.04.1
Ubuntu 12.04 LTS:
ca-certificates

20141019ubuntu0.12.04.1
Ubuntu 10.04 LTS:
ca-certificates

20141019ubuntu0.10.04.1

To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.

In general, a standard system update will make all the necessary changes.

References

LP: 1423904

Speaking with Gartner about Advanced Persistent Threats

Advanced Persistent Threat

Despite the continuous and growing investments in computer security –Gartner estimated that in 2013 enterprises spent more than $13 billion on firewalls, intrusion prevention systems, endpoint protection platforms and secure Web gateways–, it is clear that the war against malware is far from being won.

In fact, the consulting firm warns that “All organizations should now assume that they are in a state of continuous compromise” (“Designing an Adaptive Security Architecture for Protection from Advanced Attacks”, February 12, 2014). It is precisely with the aim of informing our customers and users in general of the real danger posed by advanced threats that we offer readers this exclusive newsletter that includes the aforementioned Gartner report.

The subject is really important, as shown by the following data: 85 percent of targeted attacks against businesses go undetected for weeks or more, and 92 percent of incidents are discovered by a third party, according to Verizon’s 2014 Data Breach Investigations Report.

To fight this situation, Panda Security proposes the use of services capable of detecting and combating advanced threats: Panda Advanced Protection Service monitors and controls every application running in an organization. The service, designed for large enterprise customers, consists of an agent installed on every endpoint on the network, a cloud infrastructure, and the constant monitoring and assistance provided by PandaLabs security experts.

The post Speaking with Gartner about Advanced Persistent Threats appeared first on MediaCenter Panda Security.