Описание
Security update for samba
This update for samba fixes the following issues:
- CVE-2019-14907: Fixed a Server-side crash after charset conversion failure during NTLMSSP processing (bsc#1160888).
Список пакетов
Image SLES12-SP5-Azure-BYOS
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-Basic-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-HPC-BYOS
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-HPC-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-SAP-BYOS
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-SAP-On-Demand
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-Standard-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-EC2-BYOS
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-EC2-ECS-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-EC2-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-EC2-SAP-BYOS
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-EC2-SAP-On-Demand
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-GCE-BYOS
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-GCE-On-Demand
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-GCE-SAP-BYOS
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-GCE-SAP-On-Demand
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-OCI-BYOS-BYOS
libdcerpc-binding0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-4.10.5+git.134.674d33703a6-3.3.1
libndr0-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-OCI-BYOS-SAP-BYOS
ctdb-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc-binding0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-4.10.5+git.134.674d33703a6-3.3.1
libndr0-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-SAP-Azure-LI-BYOS-Production
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-SAP-Azure-VLI-BYOS-Production
ctdb-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
SUSE Linux Enterprise High Availability Extension 12 SP5
ctdb-4.10.5+git.134.674d33703a6-3.3.1
SUSE Linux Enterprise Server 12 SP5
libdcerpc-binding0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc-binding0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr0-4.10.5+git.134.674d33703a6-3.3.1
libndr0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbclient0-4.10.5+git.134.674d33703a6-3.3.1
libsmbclient0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-32bit-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-4.10.5+git.134.674d33703a6-3.3.1
samba-client-4.10.5+git.134.674d33703a6-3.3.1
samba-client-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-doc-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-python3-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-python3-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-winbind-4.10.5+git.134.674d33703a6-3.3.1
samba-winbind-32bit-4.10.5+git.134.674d33703a6-3.3.1
SUSE Linux Enterprise Server for SAP Applications 12 SP5
libdcerpc-binding0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc-binding0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-4.10.5+git.134.674d33703a6-3.3.1
libdcerpc0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libndr0-4.10.5+git.134.674d33703a6-3.3.1
libndr0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-4.10.5+git.134.674d33703a6-3.3.1
libnetapi0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-credentials0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-errors0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-hostconfig0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-passdb0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-4.10.5+git.134.674d33703a6-3.3.1
libsamdb0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbclient0-4.10.5+git.134.674d33703a6-3.3.1
libsmbclient0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-4.10.5+git.134.674d33703a6-3.3.1
libsmbconf0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-4.10.5+git.134.674d33703a6-3.3.1
libsmbldap2-32bit-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-4.10.5+git.134.674d33703a6-3.3.1
libtevent-util0-32bit-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-4.10.5+git.134.674d33703a6-3.3.1
libwbclient0-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-4.10.5+git.134.674d33703a6-3.3.1
samba-client-4.10.5+git.134.674d33703a6-3.3.1
samba-client-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-doc-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-python3-4.10.5+git.134.674d33703a6-3.3.1
samba-libs-python3-32bit-4.10.5+git.134.674d33703a6-3.3.1
samba-winbind-4.10.5+git.134.674d33703a6-3.3.1
samba-winbind-32bit-4.10.5+git.134.674d33703a6-3.3.1
SUSE Linux Enterprise Software Development Kit 12 SP5
libndr-devel-4.10.5+git.134.674d33703a6-3.3.1
libndr-krb5pac-devel-4.10.5+git.134.674d33703a6-3.3.1
libndr-nbt-devel-4.10.5+git.134.674d33703a6-3.3.1
libndr-standard-devel-4.10.5+git.134.674d33703a6-3.3.1
libsamba-util-devel-4.10.5+git.134.674d33703a6-3.3.1
libsmbclient-devel-4.10.5+git.134.674d33703a6-3.3.1
libwbclient-devel-4.10.5+git.134.674d33703a6-3.3.1
samba-core-devel-4.10.5+git.134.674d33703a6-3.3.1
Ссылки
- Link for SUSE-SU-2020:0152-1
- E-Mail link for SUSE-SU-2020:0152-1
- SUSE Security Ratings
- SUSE Bug 1160888
- SUSE CVE CVE-2019-14907 page
Описание
All samba versions 4.9.x before 4.9.18, 4.10.x before 4.10.12 and 4.11.x before 4.11.5 have an issue where if it is set with "log level = 3" (or above) then the string obtained from the client, after a failed character conversion, is printed. Such strings can be provided during the NTLMSSP authentication exchange. In the Samba AD DC in particular, this may cause a long-lived process(such as the RPC server) to terminate. (In the file server case, the most likely target, smbd, operates as process-per-client and so a crash there is harmless).
Затронутые продукты
Image SLES12-SP5-Azure-BYOS:samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-Basic-On-Demand:samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-HPC-BYOS:samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Image SLES12-SP5-Azure-HPC-On-Demand:samba-libs-4.10.5+git.134.674d33703a6-3.3.1
Ссылки
- CVE-2019-14907
- SUSE Bug 1160888