Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2022-2074

Опубликовано: 17 мая 2022
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2022-2074: samba security, bug fix, and enhancement update (MODERATE)

[4.15.5-5]

  • resolves: rhbz#2064325 - Fix 'create krb5 conf = yes' when a KDC has a single IP address.

[4.15.5-4]

  • resolves: rhbz#2057503 - Fix winbind kerberos ticket refresh

[4.15.5-3]

  • related: rhbz#1979959 - Fix typo in testparm output

[4.15.5-2]

  • resolves: rhbz#1979959 - Improve idmap autorid sanity checks and documentation

[4.15.5-1]

  • resolves: #1995849 - [RFE] Change change password change prompt phrasing
  • resolves: #2029417 - virusfilter_vfs_openat: Not scanned: Directory or special file

[4.15.5-0]

  • Update to Samba 4.15.5
  • related: rhbz#2013596 - Rebase Samba to the the latest 4.15.x release
  • resolves: rhbz#2046127 - Fix CVE-2021-44141
  • resolves: rhbz#2046153 - Fix CVE-2021-44142
  • resolves: rhbz#2044404 - Printing no longer works on Windows 7
  • resolves: rhbz#2043154 - Fix systemd notifications
  • resolves: rhbz#2049602 - Disable NTLMSSP for ldap client connections (e.g. libads)

[4.15.4-0]

  • Update to Samba 4.15.4
  • related: rhbz#2013596 - Rebase Samba to the the latest 4.15.x release
  • resolves: rhbz#2039153 - Fix CVE-2021-20316
  • resolves: rhbz#1912549 - Winexe: Kerberos flag not invoking Kerberos Auth
  • resolves: rhbz#2039157 - Fix CVE-2021-43566
  • resolves: rhbz#2038148 - Failed to authenticate users after upgrade samba package to release samba-4.14.5-7
  • resolves: rhbz#2035528 - [smb] Segmentation fault when joining the domain
  • resolves: rhbz#2038796 - filename_convert_internal: open_pathref_fsp [xxx] failed: NT_STATUS_ACCESS_DENIED

[4.15.3-1]

  • related: rhbz#2013596 - Rebase to version 4.15.3
  • resolves: rhbz#2028029 - Fix possible null pointer dereference in winbind
  • resolves: rhbz#1912549 - Winexe: Kerberos Auth is respected via --use-kerberos=desired

[4.15.2-2]

  • related: rhbz#2013596 - Remove unneeded lmdb dependency

[4.15.2-1]

  • resolves: rhbz#2013596 - Rebase to version 4.15.2
  • resolves: rhbz#1999294 - Remove noisy error message in winbindd
  • resolves: rhbz#1958881 - Dont require winbind being online for krb5 auth with one-way trusts
  • resolves: rhbz#2019461 - Fix deleting directories with dangling symlinks

[4.14.5-14]

  • related: rbhz#2019674 - Fix CVE-2020-25717
  • Fix running ktest (selftest)

[4.14.5-13]

  • related: rbhz#2019674 - Fix CVE-2020-25717
  • Add missing checks for IPA DC server role

[4.14.5-12]

  • related: rbhz#2019674 - Fix regression with 'allow trusted domains = no'

[4.14.5-11]

  • resolves: rhbz#2021425 - Add missing PAC buffer types to krb5pac.idl

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

ctdb

4.15.5-5.el8

libsmbclient

4.15.5-5.el8

libsmbclient-devel

4.15.5-5.el8

libwbclient

4.15.5-5.el8

libwbclient-devel

4.15.5-5.el8

python3-samba

4.15.5-5.el8

python3-samba-test

4.15.5-5.el8

samba

4.15.5-5.el8

samba-client

4.15.5-5.el8

samba-client-libs

4.15.5-5.el8

samba-common

4.15.5-5.el8

samba-common-libs

4.15.5-5.el8

samba-common-tools

4.15.5-5.el8

samba-devel

4.15.5-5.el8

samba-krb5-printing

4.15.5-5.el8

samba-libs

4.15.5-5.el8

samba-pidl

4.15.5-5.el8

samba-test

4.15.5-5.el8

samba-test-libs

4.15.5-5.el8

samba-vfs-iouring

4.15.5-5.el8

samba-winbind

4.15.5-5.el8

samba-winbind-clients

4.15.5-5.el8

samba-winbind-krb5-locator

4.15.5-5.el8

samba-winbind-modules

4.15.5-5.el8

Oracle Linux x86_64

ctdb

4.15.5-5.el8

libsmbclient

4.15.5-5.el8

libsmbclient-devel

4.15.5-5.el8

libwbclient

4.15.5-5.el8

libwbclient-devel

4.15.5-5.el8

python3-samba

4.15.5-5.el8

python3-samba-test

4.15.5-5.el8

samba

4.15.5-5.el8

samba-client

4.15.5-5.el8

samba-client-libs

4.15.5-5.el8

samba-common

4.15.5-5.el8

samba-common-libs

4.15.5-5.el8

samba-common-tools

4.15.5-5.el8

samba-devel

4.15.5-5.el8

samba-krb5-printing

4.15.5-5.el8

samba-libs

4.15.5-5.el8

samba-pidl

4.15.5-5.el8

samba-test

4.15.5-5.el8

samba-test-libs

4.15.5-5.el8

samba-vfs-iouring

4.15.5-5.el8

samba-winbind

4.15.5-5.el8

samba-winbind-clients

4.15.5-5.el8

samba-winbind-krb5-locator

4.15.5-5.el8

samba-winbind-modules

4.15.5-5.el8

samba-winexe

4.15.5-5.el8

Связанные CVE

Связанные уязвимости

rocky
около 3 лет назад

Moderate: samba security, bug fix, and enhancement update

suse-cvrf
больше 3 лет назад

Security update for samba

suse-cvrf
больше 3 лет назад

Security update for samba

suse-cvrf
больше 3 лет назад

Security update for samba

CVSS3: 6.8
ubuntu
почти 3 года назад

A flaw was found in the way Samba handled file/directory metadata. This flaw allows an authenticated attacker with permissions to read or modify share metadata, to perform this operation outside of the share.

Уязвимость ELSA-2022-2074