Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-2519

Опубликовано: 15 мая 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-2519: samba security, bug fix, and enhancement update (LOW)

evolution-mapi [3.40.1-5]

  • Related: #2131993 (Rebuild against samba 4.17)

openchange [2.3-40]

  • Related: #2131993 (Rebuild against samba 4.17)

samba [4.17.5-102.0.1]

  • Fix memleak in _nss_winbind_initgroups_dyn [Orabug: 34994509]

[4.17.5-102]

  • resolves: rhbz#2169980 - Fix winbind memory leak
  • resolves: rhbz#2156056 - Fix Samba shares not accessible issue

[4.17.5-101]

  • resolves: rhbz#2168534 - Create package samba-tools

[4.17.5-100]

  • related: rhbz#2131993 - Update to version 4.17.5

[4.17.4-102]

  • related: rhbz#2131993 - Create package dc-libs also for 'non-dc build'

[4.17.4-101]

  • related: rhbz#2131993 - Rebuild for MIT Kerberos 1.20.1

[4.17.4-100]

  • related: rhbz#2131993 - Update to version 4.17.4
  • resolves: rhbz#2154373 - Fix CVE-2022-38023
  • resolves: rhbz#2143196 - Fix %U include directive for share listing (netshareenum)
  • resolves: rhbz#2114884 - Fix id command to return new groups after successful user login
  • resolves: rhbz#2154885 - Fix Winbind to retrieve user groups from Active Directory

[4.17.2-103]

  • Always add epoch to samba_depver to fix osci.brew-build.rpmdeplint.functional
  • related: rhbz#2131993

[4.17.2-102]

  • Fix CVE-2022-1615 GnuTLS gnutls_rnd() can fail and give predictable random values
  • resolves: rhbz#2126175

[4.17.2-101]

  • resolves: rhbz#2131993 - Update to version 4.17.2

[4.16.4-101]

  • resolves: rhbz#2121317 - Do not require samba package in python3-samba

[4.16.4-100]

  • Rebase to version 4.16.4
  • resolves: rhbz#2108332 - Fix CVE-2022-32742

[ 4.16.3-101]

  • related: rhbz#2077487 - Rebase Samba to 4.16.3
  • resolves: rhbz#2097655 - The pcap background queue process should not be stopped
  • resolves: rhbz#2100105 - Fix net ads info LDAP server and LDAP server name

[4.16.2-102]

  • resolves: rhbz#2106279 - Fix crash in rpcd_classic

[4.16.2-101]

  • resolves: rhbz#2093833 - Fix weak dependency on logrotate
  • resolves: rhbz#2096813 - Fix printer displays only after 300 seconds timeout

[4.16.2-100]

  • Fix rpminspect abidiff
  • related: rhbz#2077487 - Rebase Samba to 4.16.2

[4.16.1-100]

  • resolves: rhbz#2077487 - Rebase Samba to the the latest 4.16.x release

[4.15.5-108]

  • resolves: rhbz#2078838 - Fix UPNs handling in lookup_name*() calls

[4.15.5-106]

  • resolves: rhbz#2065376 - Fix 'create krb5 conf = yes when a KDC has a single IP address.
  • resolves: rhbz#2076504 - PAM Kerberos authentication fails with a clock skew error

[4.15.5-105]

  • resolves: rhbz#2074891 - Fix username map for unix groups

[4.15.5-104]

  • resolves: rhbz#2057500 - Fix winbind kerberos ticket refresh

[4.15.5-103]

  • related: rhbz#2044231 - Fix typo in testparm output

[4.15.5-102]

  • resolves: rhbz#2044231 - Improve idmap autorid sanity checks and documentation

[4.15.5-101]

  • resolves: #2050111 - [RFE] Change change password change prompt phrasing
  • resolves: #2054110 - virusfilter_vfs_openat: Not scanned: Directory or special file

[4.15.5-100]

  • related: rhbz#2013578 - Rebase Samba to the the latest 4.15.x release
  • resolves: #2046129 - Fix CVE-2021-44141
  • resolves: #2046154 - Fix CVE-2021-44142
  • resolves: #2044405 - Fix printing no longer works on Windows 7
  • resolves: #2049485 - Fix systemd notifications
  • resolves: #2049604 - Disable NTLMSSP for ldap client connections

[4.15.4-100]

  • related: rhbz#2013578 - Rebase Samba to the the latest 4.15.x release
  • resolves: #2039154 - Fix CVE-2021-20316
  • resolves: #2044238 - Failed to authenticate users after upgrade samba package to release samba-4.14.5-7x
  • resolves: #2044239 - [smb] Segmentation fault when joining the domain
  • resolves: #2044241 - filename_convert_internal: open_pathref_fsp [xxx] failed: NT_STATUS_ACCESS_DENIED
  • resolves: #2044255 - Fix CVE-2021-43566

[4.15.3-1]

  • related: rhbz#2013578 - Rebase to Samba 4.15.3
  • resolves: rhbz#2028026 - Fix possible null pointer dereference in winbind
  • resolves: rhbz#2033317 - Winexe: Kerberos Auth is respected via --use-kerberos=desired

[4.15.2-3]

  • related: rhbz#2013578 - Remove unneeded lmdb dependency

[4.15.2-2]

  • resolves: rhbz#2019675 - Fix CVE-2020-25717

[4.15.2-2]

  • resolves: rhbz#2019669 - Fix CVE-2021-23192

[4.15.2-2]

  • resolves: rhbz#2019663 - Fix CVE-2016-2124

[4.15.2-1]

  • resolves: rhbz#2013578 - Rebase to Samba 4.15.2

[4.14.5-103]

  • resolves: rhbz#1980356 - Fix winbind restart on package upgrade

[0:4.14.5-102]

  • Rebuilt for IMA sigs, glibc 2.34, aarch64 flags Related: rhbz#1991688

[4.14.5-101]

  • related: rhbz#1975690 - Create a subpackage for vfs-iouring

[4.14.5-100]

  • related: rhbz#1954531 - Make sure upgrades to RHEL9 will work

[4.14.5-0]

  • related: rhbz#1954531 - Update to Samba 4.14.5

[4.14.4-7]

  • related: rhbz#1954531 - Fix build issues with gcc
  • resolves: rhbz#1959712 - Add iouring vfs module

[4.14.4-5]

  • related: rhbz#1954531 - Add rpminspect.yaml

[4.14.4-2]

  • related: rhbz#1954531 - Remove obsolete /var/spool/samba

[4.14.4-1]

  • resolves: rhbz#1954531 - Update to Samba 4.14.4
  • resolves: rhbz#1949446 - Fix CVE-2021-20254
  • resolves: rhbz#1942378 - Disable nis support

[0:4.14.2-0.1]

  • Rebuilt for RHEL 9 BETA on Apr 15th 2021. Related: rhbz#1947937

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

evolution-mapi

3.40.1-5.el9

evolution-mapi-langpacks

3.40.1-5.el9

libnetapi

4.17.5-102.0.1.el9

libnetapi-devel

4.17.5-102.0.1.el9

libsmbclient

4.17.5-102.0.1.el9

libsmbclient-devel

4.17.5-102.0.1.el9

libwbclient

4.17.5-102.0.1.el9

libwbclient-devel

4.17.5-102.0.1.el9

openchange

2.3-40.el9

python3-samba

4.17.5-102.0.1.el9

python3-samba-dc

4.17.5-102.0.1.el9

python3-samba-devel

4.17.5-102.0.1.el9

python3-samba-test

4.17.5-102.0.1.el9

samba

4.17.5-102.0.1.el9

samba-client

4.17.5-102.0.1.el9

samba-client-libs

4.17.5-102.0.1.el9

samba-common

4.17.5-102.0.1.el9

samba-common-libs

4.17.5-102.0.1.el9

samba-common-tools

4.17.5-102.0.1.el9

samba-dc-libs

4.17.5-102.0.1.el9

samba-dcerpc

4.17.5-102.0.1.el9

samba-devel

4.17.5-102.0.1.el9

samba-krb5-printing

4.17.5-102.0.1.el9

samba-ldb-ldap-modules

4.17.5-102.0.1.el9

samba-libs

4.17.5-102.0.1.el9

samba-pidl

4.17.5-102.0.1.el9

samba-test

4.17.5-102.0.1.el9

samba-test-libs

4.17.5-102.0.1.el9

samba-tools

4.17.5-102.0.1.el9

samba-usershares

4.17.5-102.0.1.el9

samba-vfs-iouring

4.17.5-102.0.1.el9

samba-winbind

4.17.5-102.0.1.el9

samba-winbind-clients

4.17.5-102.0.1.el9

samba-winbind-krb5-locator

4.17.5-102.0.1.el9

samba-winbind-modules

4.17.5-102.0.1.el9

Oracle Linux x86_64

evolution-mapi

3.40.1-5.el9

evolution-mapi-langpacks

3.40.1-5.el9

libnetapi

4.17.5-102.0.1.el9

libnetapi-devel

4.17.5-102.0.1.el9

libsmbclient

4.17.5-102.0.1.el9

libsmbclient-devel

4.17.5-102.0.1.el9

libwbclient

4.17.5-102.0.1.el9

libwbclient-devel

4.17.5-102.0.1.el9

openchange

2.3-40.el9

python3-samba

4.17.5-102.0.1.el9

python3-samba-dc

4.17.5-102.0.1.el9

python3-samba-devel

4.17.5-102.0.1.el9

python3-samba-test

4.17.5-102.0.1.el9

samba

4.17.5-102.0.1.el9

samba-client

4.17.5-102.0.1.el9

samba-client-libs

4.17.5-102.0.1.el9

samba-common

4.17.5-102.0.1.el9

samba-common-libs

4.17.5-102.0.1.el9

samba-common-tools

4.17.5-102.0.1.el9

samba-dc-libs

4.17.5-102.0.1.el9

samba-dcerpc

4.17.5-102.0.1.el9

samba-devel

4.17.5-102.0.1.el9

samba-krb5-printing

4.17.5-102.0.1.el9

samba-ldb-ldap-modules

4.17.5-102.0.1.el9

samba-libs

4.17.5-102.0.1.el9

samba-pidl

4.17.5-102.0.1.el9

samba-test

4.17.5-102.0.1.el9

samba-test-libs

4.17.5-102.0.1.el9

samba-tools

4.17.5-102.0.1.el9

samba-usershares

4.17.5-102.0.1.el9

samba-vfs-iouring

4.17.5-102.0.1.el9

samba-winbind

4.17.5-102.0.1.el9

samba-winbind-clients

4.17.5-102.0.1.el9

samba-winbind-krb5-locator

4.17.5-102.0.1.el9

samba-winbind-modules

4.17.5-102.0.1.el9

samba-winexe

4.17.5-102.0.1.el9

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 3 лет назад

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

CVSS3: 5.1
redhat
около 3 лет назад

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

CVSS3: 5.5
nvd
около 3 лет назад

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random values.

CVSS3: 5.5
debian
около 3 лет назад

In Samba, GnuTLS gnutls_rnd() can fail and give predictable random val ...

suse-cvrf
почти 3 года назад

Security update for samba