[Security] Update Radiator for CVE-2012-1182

Please post questions that doesn't fall into the above categories here.

[Security] Update Radiator for CVE-2012-1182

Postby elgoretto » Wed Apr 25, 2012 7:18 am

Hi,

It's been a while now that the security advisory CVE-2012-1182 has been out: https://www.samba.org/samba/security/CVE-2012-1182
It basically means that every system running samba is vunerable to anyone gaining remote root access. Cool, isn't it?

So upgrading samba is now a priority for every NAS maker, firmware updates from various vendors are now available. What about Netgear?
In my view, it's urgent to push a fixed 3.x samba into incoming RAIDiator-x86 4.2.20 for example. Or even issuing an intermediate Raidiator update with only this samba update.
elgoretto
ReadyNAS Newbie
 
Posts: 5
Joined: Wed Apr 25, 2012 7:01 am
ReadyNAS: Ultra

Re: [Security] Update Radiator for CVE-2012-1182

Postby mdgm » Wed Apr 25, 2012 8:29 am

The fix is already in RAIDiator 4.1.9-T10 for Sparc.

The latest public beta of RAIDiator 4.2.20 for x86 includes 3.5.12 and I know a later beta includes 3.5.13. One would expect 4.2.20 which is due for release very soon should have the updated samba 3.5.14 that addresses the vulnerability but we'll have to wait and see. Hopefully someone from NetGear can comment.
Useful links: My ReadyNAS Gear|FAQ|Hardware Compatibility List|Docs: Setup Guide, Manual|Downloads|Unofficial Tips|GPL|MDGM on Twitter|MDGM's Unofficial Guides
NB: A ReadyNas is not an excuse not to have a backup. Fire, theft, multiple disk failures, other hardware failure, floods, user negligence etc. can all result in loss of data.
How we users can contact NETGEAR Technical Support | Australia: 1300 361 254 / Other Numbers|Online Submission
Unofficial Guide for Moving from Sparc ReadyNAS to x86 ReadyNAS|Using Gmail with the ReadyNAS|XRAID Volume Size Calculator
User avatar
mdgm
ReadyNAS Enthusiast
 
Posts: 28908
Joined: Tue Feb 17, 2009 9:34 pm
Location: Down Under
ReadyNAS: RN516

Re: [Security] Update Radiator for CVE-2012-1182

Postby mdgm » Wed Apr 25, 2012 6:38 pm

4.2.20 has been released but it contains samba 3.5.13.
Useful links: My ReadyNAS Gear|FAQ|Hardware Compatibility List|Docs: Setup Guide, Manual|Downloads|Unofficial Tips|GPL|MDGM on Twitter|MDGM's Unofficial Guides
NB: A ReadyNas is not an excuse not to have a backup. Fire, theft, multiple disk failures, other hardware failure, floods, user negligence etc. can all result in loss of data.
How we users can contact NETGEAR Technical Support | Australia: 1300 361 254 / Other Numbers|Online Submission
Unofficial Guide for Moving from Sparc ReadyNAS to x86 ReadyNAS|Using Gmail with the ReadyNAS|XRAID Volume Size Calculator
User avatar
mdgm
ReadyNAS Enthusiast
 
Posts: 28908
Joined: Tue Feb 17, 2009 9:34 pm
Location: Down Under
ReadyNAS: RN516

Re: [Security] Update Radiator for CVE-2012-1182

Postby elgoretto » Thu Apr 26, 2012 4:10 pm

Vulnerable, so need a fast "rerelease" 4.2.21 with samba Samba 3.5.14.
elgoretto
ReadyNAS Newbie
 
Posts: 5
Joined: Wed Apr 25, 2012 7:01 am
ReadyNAS: Ultra

Re: [Security] Update Radiator for CVE-2012-1182

Postby Etz » Thu Apr 26, 2012 10:56 pm

Maybe they have just patched it? :roll:
...life is random, so am I...
So, there is a fan. Time to grab your sh*t, gentlemen!
User avatar
Etz
Advanced ReadyNAS User
 
Posts: 178
Joined: Wed Dec 22, 2010 9:48 am
Location: Estonia
ReadyNAS: Ultra

Re: [Security] Update Radiator for CVE-2012-1182

Postby mdgm » Fri Apr 27, 2012 12:42 am

Considering the build date for 4.2.20 is prior to the release of 3.5.14 I doubt it.

I reckon we can expect the patch in 4.2.21
Useful links: My ReadyNAS Gear|FAQ|Hardware Compatibility List|Docs: Setup Guide, Manual|Downloads|Unofficial Tips|GPL|MDGM on Twitter|MDGM's Unofficial Guides
NB: A ReadyNas is not an excuse not to have a backup. Fire, theft, multiple disk failures, other hardware failure, floods, user negligence etc. can all result in loss of data.
How we users can contact NETGEAR Technical Support | Australia: 1300 361 254 / Other Numbers|Online Submission
Unofficial Guide for Moving from Sparc ReadyNAS to x86 ReadyNAS|Using Gmail with the ReadyNAS|XRAID Volume Size Calculator
User avatar
mdgm
ReadyNAS Enthusiast
 
Posts: 28908
Joined: Tue Feb 17, 2009 9:34 pm
Location: Down Under
ReadyNAS: RN516

Re: [Security] Update Radiator for CVE-2012-1182

Postby elgoretto » Tue May 01, 2012 2:09 pm

Is there a way to contact Netgear to get an official statement on this security issue?
elgoretto
ReadyNAS Newbie
 
Posts: 5
Joined: Wed Apr 25, 2012 7:01 am
ReadyNAS: Ultra

Re: [Security] Update Radiator for CVE-2012-1182

Postby beisser » Wed May 02, 2012 2:29 am

CVE-2012-1182 has been patched in 4.2.20 release and the current 4.1.9 beta.

they just forgot to change the samba version number.
if you need the correct version number wait for 4.2.21. there will not be any "hot" release though since the only "issue" is the version number.
User avatar
beisser
Jedi Council
 
Posts: 2319
Joined: Mon Dec 10, 2007 3:12 am
Location: Near Munich, Germany
ReadyNAS: Pro

Re: [Security] Update Radiator for CVE-2012-1182

Postby mdgm » Wed May 02, 2012 4:04 am

Ah that's good to know. Guess this patch would show up in the GPL?: http://www.ReadyNAS.com/GPL
Useful links: My ReadyNAS Gear|FAQ|Hardware Compatibility List|Docs: Setup Guide, Manual|Downloads|Unofficial Tips|GPL|MDGM on Twitter|MDGM's Unofficial Guides
NB: A ReadyNas is not an excuse not to have a backup. Fire, theft, multiple disk failures, other hardware failure, floods, user negligence etc. can all result in loss of data.
How we users can contact NETGEAR Technical Support | Australia: 1300 361 254 / Other Numbers|Online Submission
Unofficial Guide for Moving from Sparc ReadyNAS to x86 ReadyNAS|Using Gmail with the ReadyNAS|XRAID Volume Size Calculator
User avatar
mdgm
ReadyNAS Enthusiast
 
Posts: 28908
Joined: Tue Feb 17, 2009 9:34 pm
Location: Down Under
ReadyNAS: RN516

Re: [Security] Update Radiator for CVE-2012-1182

Postby beisser » Wed May 02, 2012 3:07 pm

yeah i guess it would, although im not too good with reading sourcecode :)
User avatar
beisser
Jedi Council
 
Posts: 2319
Joined: Mon Dec 10, 2007 3:12 am
Location: Near Munich, Germany
ReadyNAS: Pro

Re: [Security] Update Radiator for CVE-2012-1182

Postby elgoretto » Fri May 04, 2012 4:26 am

Ok, I can confirm this with this nmap script (http://nmap.org/nsedoc/scripts/samba-vuln-cve-2012-1182.html) for 4.2.20 for x86.
It does not report a vulnerable target (damn missing vuln.lua library...).

Code: Select all
# nmap --script ./samba-vuln-cve-2012-1182.nse  -p 139 NAS

Starting Nmap 5.51 ( http://nmap.org ) at 2012-05-04 13:18 CEST
Nmap scan report for NAS (192.168.0.250)
Host is up (0.00052s latency).
rDNS record for 192.168.0.250: NAS.mydomain
PORT    STATE SERVICE
139/tcp open  netbios-ssn

Nmap done: 1 IP address (1 host up) scanned in 1.09 seconds


I don't have readynas with non-x86 architecture, but you should be able to run this script to validate if they have been actually patched or not against CVE-2012-1182.
elgoretto
ReadyNAS Newbie
 
Posts: 5
Joined: Wed Apr 25, 2012 7:01 am
ReadyNAS: Ultra


Return to General Questions (English)



Who is online

Users browsing this forum: No registered users and 6 guests