Mandriva Linux Security Advisory : samba (MDVSA-2012:067)
Medium Nessus Plugin ID 58939
SynopsisThe remote Mandriva Linux host is missing one or more security updates.
DescriptionA vulnerability has been found and corrected in samba :
Security checks were incorrectly applied to the Local Security Authority (LSA) remote proceedure calls (RPC) CreateAccount, OpenAccount, AddAccountRights and RemoveAccountRights allowing any authenticated user to modify the privileges database (CVE-2012-2111).
The updated packages have been patched to correct this issue.
SolutionUpdate the affected packages.