Oval Definition:oval:com.redhat.rhsa:def:20171272
Revision Date:2017-05-24Version:635
Title:RHSA-2017:1272: samba3x security update (Important)
Description:Samba is an open-source implementation of the Server Message Block (SMB) or Common Internet File System (CIFS) protocol, which allows PC-compatible machines to share files, printers, and other information.

Security Fix(es):

  • A remote code execution flaw was found in Samba. A malicious authenticated samba client, having write access to the samba share, could use this flaw to execute arbitrary code as root. (CVE-2017-7494)

    Red Hat would like to thank the Samba project for reporting this issue. Upstream acknowledges steelo as the original reporter.
  • Family:unixClass:patch
    Status:Reference(s):CVE-2017-7494
    RHSA-2017:1272
    RHSA-2017:1272-01
    Platform(s):Red Hat Enterprise Linux 5 Extended Lifecycle Support
    Product(s):
    Definition Synopsis
  • Red Hat Enterprise Linux must be installed
  • OR Package Information
  • Red Hat Enterprise Linux 5 is installed
  • AND
  • samba3x is earlier than 0:3.6.23-14.el5_11
  • AND samba3x is signed with Red Hat redhatrelease2 key
  • samba3x-client is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-client is signed with Red Hat redhatrelease2 key
  • samba3x-common is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-common is signed with Red Hat redhatrelease2 key
  • samba3x-doc is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-doc is signed with Red Hat redhatrelease2 key
  • samba3x-domainjoin-gui is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-domainjoin-gui is signed with Red Hat redhatrelease2 key
  • samba3x-swat is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-swat is signed with Red Hat redhatrelease2 key
  • samba3x-winbind is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-winbind is signed with Red Hat redhatrelease2 key
  • samba3x-winbind-devel is earlier than 0:3.6.23-14.el5_11
  • AND samba3x-winbind-devel is signed with Red Hat redhatrelease2 key
  • BACK