Signal 42 - Information Technology News
CityClubCasino.com - Get 7 times match bonus upto $100 per day!
BingoFantasy.com - Get $5 Free!
RaceTrackCasino.com
Bingo777.com - Get $5 Free!

Pulse Of The Web


Technology News Archive
April 2007
February 2007
January 2007
December 2006
November 2006
October 2006
September 2006
August 2006
July 2006
June 2006
May 2006
April 2006
March 2006
February 2006
January 2006
December 2005
November 2005
October 2005
September 2005
August 2005
July 2005
June 2005
May 2005
April 2005
March 2005
February 2005
January 2005
December 2004

Technology News Feed Add Information Technology News Feed to Google
Add Information Technology News to My Yahoo!
Add Information Technology News to My MSN!
Information Technology News Feed Syndication
We support:

Apache
XFree86
Cygwin
Linux Documentation Project
CURL
GNU
ProFTPd
Sudo-ftp
Sudo

Useful Tutorials:

PostgreSQL
FreeBSD
Python
GCC
PHP4

 

Sourcefire and iDEFENSE Deliver Detection for New Samba SMB Daemon Vulnerability


Monday, 20 December 2004

Sourcefire, Inc., the world leader in real-time network defense, and iDEFENSE, the global leader in cyber threat intelligence solutions, today announced that their customers are the first who can detect the new Samba SMB daemon vulnerability announced earlier today. Through collaboration with iDEFENSE, the Sourcefire Vulnerability Research Team (VRT) received notice of this serious vulnerability and quickly determined that it is remotely exploitable.


Sourcefire and iDEFENSE customers received new rules for the Sourcefire 3D System and Snort IDS in conjunction with Samba's public notification of the vulnerability, allowing them to immediately protect their networks and preempt possible exploits.

To further support customers, Sourcefire's VRT has issued an advisory detailing how Sourcefire RNA can be leveraged to quickly find all potentially vulnerable SAMBA servers on a customer's network. Based on the customers security policy, the Sourcefire 3D System then automatically responds according to the ABC's of Defense - Alert, Block, Correct.

iDEFENSE has also issued a public advisory detailing the vulnerability. The cooperation between the two companies provided a fully integrated technology and intelligence solution that prevents hackers from compromising a customer's network.

Samba is a file and print serving system for heterogeneous networks. It is available for use as a service and client on UNIX/Linux systems and as a client for Microsoft Windows systems. Samba uses the SMB/CIFS protocols to allow communication between client and server. The SMB protocol contains many commands and is commonly used to control network devices and systems from a remote location.

A vulnerability exists in the way the smb daemon processes commands sent by a client system when accessing resources on the remote server. The problem exists in the allocation of memory, which can be exploited by an attacker to cause an integer overflow, possibly leading to the execution of arbitrary code on the affected system with the privileges of the user running the smbd process.

"This prompt protection demonstrates how cooperation between security companies, as well as a dual focus on intelligence and technology, is the best approach to defending against emerging threats," said Michael Sutton, director of iDEFENSE's vulnerability research. "In this instance we turned to Sourcefire because of its reputation for understanding the full disclosure process and the ability of its Vulnerability Research Team to create rules in real time."

"We are excited to be working with iDEFENSE and further investing in the expertise of our Vulnerability Research Team. Through relationships like this, Sourcefire is able to provide Sourcefire and Snort users with zero day detection for new vulnerabilities, greatly reducing their window of risk," said Martin Roesch, Sourcefire CTO and creator of Snort. "As perimeters dissolve and these types of vulnerabilities become more severe, Sourcefire's primary goal is to provide real-time protection against these threats."

Further information about this vulnerability and how to obtain Sourcefire or Snort Rules is available at http://www.sourcefire.com/services/advisories/sa121504.html. iDEFENSE's detailed advisory on the Samba vulnerability is at http://www.idefense.com/application/poi/display?id=165.

Sourcefire, Inc., Columbia
Kimberly Childers, 410-290-1616
kimberly.childers@sourcefire.com
or
iDEFENSE, Inc., Reston
Scott Schneider, 703-390-1230
press@idefense.com
or
Welz & Weisel Communications
Tony Welz, 703-323-6006
Tony@w2comm.com
or
Corporate Ink Public Relations
Adam Parken, 617-969-9192
aparken@corporateink.com

Source: Business Wire


All trademarks and copyrighted information contained herein are the property of their respective owners.



Related Articles




Recent Issues


Agfa Easy Pix Sp2 Agfa Easy Pix Sx Drivers
Agfa Easypix Agfa Educational Publishing
Agfa Elan 500 Agfa Ephoto
Agfa Ephoto 1680 Agfa Ephoto 780
Agfa Ephoto Camera Software Agfa Ephoto Cl18 Driver
 
 
Best Voip Service Providers



Order SunRocket

From $16.60, unlimited minutes with 12-month prepay.

Rating:

Free Uniden cordless phone, no activation fee!




Order Packet8

From $9.99 (special promotion), unlimited minutes, no contract!

Rating:

Save Over $120!




Order ViaTalk

From $15.95, unlimited minutes with 24-month contract

Rating:

Free Exxon-Mobil gas card!




Order Netzero

From $14.99 unlimited minutes, no contract!, 3 months free.

Rating:

Get Three Months of NetZero VoIP Free!

Security News
Voip News
Telecom News
Hardware News




A   B   C   D   E   F   G   H   I   J   K   L   M   N   O   P   Q   R   S   T   U   V   W   X   Y   Z