From owner-freebsd-security@freebsd.org Mon May 29 17:33:31 2017 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 7DF70D7C030 for ; Mon, 29 May 2017 17:33:31 +0000 (UTC) (envelope-from mail@kkoenig.net) Received: from mx1.outerhaven.de (mx1.outerhaven.de [81.14.236.89]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id D603A83276 for ; Mon, 29 May 2017 17:33:30 +0000 (UTC) (envelope-from mail@kkoenig.net) Received: from [192.168.2.113] (shadow-moses.lan [192.168.2.113]) by mx1.outerhaven.de (OpenSMTPD) with ESMTPSA id c8dc3ae9 TLS version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO for ; Mon, 29 May 2017 19:26:47 +0200 (CEST) Subject: Re: Samba CVE-2017-7494 on 3.6.25 To: freebsd-security@freebsd.org References: From: =?UTF-8?Q?Karsten_K=c3=b6nig?= Message-ID: <1f4a6ba5-979f-4138-4613-9cafbb63a898@kkoenig.net> Date: Mon, 29 May 2017 19:26:47 +0200 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.1.1 MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset=utf-8 Content-Language: en-US Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 29 May 2017 17:33:31 -0000 Hi, you could try this nmap script: https://gist.github.com/wongwaituck/62c863ba7aa28a2d22d0fe9cbe14a18b However, it does not check if the service is indeed attackable but it could be a good first hint. At the moment I does not have a FreeBSD 9 to test it, though. Best, Karsten On 29.05.2017 18:53, Darko Gavrilovic wrote: > Hello, does anyone know or able to confirm if Samba CVE-2017-7494 > affects Samba 3.6.25 on Freebsd 9.x? > > https://lists.samba.org/archive/samba-announce/2017/000406.html > > > > dg > _______________________________________________ > freebsd-security@freebsd.org mailing list > https://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org" >