Описание
Security update for samba
This update for samba fixes the following issue:
- An unprivileged user with access to the samba server could cause smbd to load a specially crafted shared library, which then had the ability to execute arbitrary code on the server as 'root'. [CVE-2017-7494, bso#12780, bsc#1038231]
Список пакетов
SUSE Linux Enterprise Point of Sale 11 SP3
ldapsmb-1.34b-93.1
libldb1-3.6.3-93.1
libsmbclient0-3.6.3-93.1
libtalloc2-3.6.3-93.1
libtdb1-3.6.3-93.1
libtevent0-3.6.3-93.1
libwbclient0-3.6.3-93.1
samba-3.6.3-93.1
samba-client-3.6.3-93.1
samba-doc-3.6.3-93.1
samba-krb-printing-3.6.3-93.1
samba-winbind-3.6.3-93.1
SUSE Linux Enterprise Server 11 SP3-LTSS
ldapsmb-1.34b-93.1
libldb1-3.6.3-93.1
libsmbclient0-3.6.3-93.1
libsmbclient0-32bit-3.6.3-93.1
libtalloc2-3.6.3-93.1
libtalloc2-32bit-3.6.3-93.1
libtdb1-3.6.3-93.1
libtdb1-32bit-3.6.3-93.1
libtevent0-3.6.3-93.1
libtevent0-32bit-3.6.3-93.1
libwbclient0-3.6.3-93.1
libwbclient0-32bit-3.6.3-93.1
samba-3.6.3-93.1
samba-32bit-3.6.3-93.1
samba-client-3.6.3-93.1
samba-client-32bit-3.6.3-93.1
samba-doc-3.6.3-93.1
samba-krb-printing-3.6.3-93.1
samba-winbind-3.6.3-93.1
samba-winbind-32bit-3.6.3-93.1
SUSE Linux Enterprise Server 11 SP3-TERADATA
ldapsmb-1.34b-93.1
libldb1-3.6.3-93.1
libsmbclient0-3.6.3-93.1
libsmbclient0-32bit-3.6.3-93.1
libtalloc2-3.6.3-93.1
libtalloc2-32bit-3.6.3-93.1
libtdb1-3.6.3-93.1
libtdb1-32bit-3.6.3-93.1
libtevent0-3.6.3-93.1
libtevent0-32bit-3.6.3-93.1
libwbclient0-3.6.3-93.1
libwbclient0-32bit-3.6.3-93.1
samba-3.6.3-93.1
samba-32bit-3.6.3-93.1
samba-client-3.6.3-93.1
samba-client-32bit-3.6.3-93.1
samba-doc-3.6.3-93.1
samba-krb-printing-3.6.3-93.1
samba-winbind-3.6.3-93.1
samba-winbind-32bit-3.6.3-93.1
SUSE Linux Enterprise Server 11 SP4
ldapsmb-1.34b-93.1
libldb1-3.6.3-93.1
libsmbclient0-3.6.3-93.1
libsmbclient0-32bit-3.6.3-93.1
libsmbclient0-x86-3.6.3-93.1
libtalloc2-3.6.3-93.1
libtalloc2-32bit-3.6.3-93.1
libtalloc2-x86-3.6.3-93.1
libtdb1-3.6.3-93.1
libtdb1-32bit-3.6.3-93.1
libtdb1-x86-3.6.3-93.1
libtevent0-3.6.3-93.1
libtevent0-32bit-3.6.3-93.1
libtevent0-x86-3.6.3-93.1
libwbclient0-3.6.3-93.1
libwbclient0-32bit-3.6.3-93.1
libwbclient0-x86-3.6.3-93.1
samba-3.6.3-93.1
samba-32bit-3.6.3-93.1
samba-client-3.6.3-93.1
samba-client-32bit-3.6.3-93.1
samba-client-x86-3.6.3-93.1
samba-doc-3.6.3-93.1
samba-krb-printing-3.6.3-93.1
samba-winbind-3.6.3-93.1
samba-winbind-32bit-3.6.3-93.1
samba-winbind-x86-3.6.3-93.1
samba-x86-3.6.3-93.1
SUSE Linux Enterprise Server for SAP Applications 11 SP4
ldapsmb-1.34b-93.1
libldb1-3.6.3-93.1
libsmbclient0-3.6.3-93.1
libsmbclient0-32bit-3.6.3-93.1
libsmbclient0-x86-3.6.3-93.1
libtalloc2-3.6.3-93.1
libtalloc2-32bit-3.6.3-93.1
libtalloc2-x86-3.6.3-93.1
libtdb1-3.6.3-93.1
libtdb1-32bit-3.6.3-93.1
libtdb1-x86-3.6.3-93.1
libtevent0-3.6.3-93.1
libtevent0-32bit-3.6.3-93.1
libtevent0-x86-3.6.3-93.1
libwbclient0-3.6.3-93.1
libwbclient0-32bit-3.6.3-93.1
libwbclient0-x86-3.6.3-93.1
samba-3.6.3-93.1
samba-32bit-3.6.3-93.1
samba-client-3.6.3-93.1
samba-client-32bit-3.6.3-93.1
samba-client-x86-3.6.3-93.1
samba-doc-3.6.3-93.1
samba-krb-printing-3.6.3-93.1
samba-winbind-3.6.3-93.1
samba-winbind-32bit-3.6.3-93.1
samba-winbind-x86-3.6.3-93.1
samba-x86-3.6.3-93.1
SUSE Linux Enterprise Software Development Kit 11 SP4
libldb-devel-3.6.3-93.1
libnetapi-devel-3.6.3-93.1
libnetapi0-3.6.3-93.1
libsmbclient-devel-3.6.3-93.1
libsmbsharemodes-devel-3.6.3-93.1
libsmbsharemodes0-3.6.3-93.1
libtalloc-devel-3.6.3-93.1
libtdb-devel-3.6.3-93.1
libtevent-devel-3.6.3-93.1
libwbclient-devel-3.6.3-93.1
samba-devel-3.6.3-93.1
samba-test-3.6.3-93.1
Ссылки
- Link for SUSE-SU-2017:1391-1
- E-Mail link for SUSE-SU-2017:1391-1
- SUSE Security Ratings
- SUSE Bug 1038231
- SUSE CVE CVE-2017-7494 page
Описание
Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allowing a malicious client to upload a shared library to a writable share, and then cause the server to load and execute it.
Затронутые продукты
SUSE Linux Enterprise Point of Sale 11 SP3:ldapsmb-1.34b-93.1
SUSE Linux Enterprise Point of Sale 11 SP3:libldb1-3.6.3-93.1
SUSE Linux Enterprise Point of Sale 11 SP3:libsmbclient0-3.6.3-93.1
SUSE Linux Enterprise Point of Sale 11 SP3:libtalloc2-3.6.3-93.1
Ссылки
- CVE-2017-7494
- SUSE Bug 1038231