Oval Definition:oval:org.opensuse.security:def:56182
Revision Date:2020-12-01Version:1
Title:Security update for samba (Moderate)
Description:

This update for samba fixes several issues.

These security issues were fixed:

- CVE-2017-12163: Prevent client short SMB1 write from writing server memory to file, leaking information from the server to the client (bsc#1058624). - CVE-2017-12150: Always enforce smb signing when it is configured (bsc#1058622). - CVE-2017-12151: Keep required encryption across SMB3 dfs redirects (bsc#1058565).

These non-security issues were fixed:

- Fixed error where short name length was read as 2 bytes, should be 1 (bsc#1042419) - Fixed GUID string format on GetPrinter to prevent published printers from disappearing 7 (bsc#1050707). - Halt endless forest trust scan to prevent winbind from running out of memory (bsc#1044084).
Family:unixClass:patch
Status:Reference(s):1005070
1005072
1005076
1013311
1014702
1015169
1016779
1017081
1017084
1020491
1020589
1020928
1021129
1021195
1021481
1022541
1023004
1023053
1023073
1023907
1024972
1026583
1035829
1041830
1042419
1043484
1043607
1044084
1045060
1045062
1045065
1048576
1050707
1058565
1058622
1058624
1107832
1108963
1110233
1122293
1122299
815451
821668
831299
877642
901488
907514
910258
911886
918984
923967
932267
933109
935573
936058
936062
944463
944697
945167
947165
949138
949549
950367
950703
950705
950706
951404
977027
986566
989980
998677
CVE-2009-0945
CVE-2010-4000
CVE-2011-1831
CVE-2011-1832
CVE-2011-1833
CVE-2011-1834
CVE-2011-1835
CVE-2011-1836
CVE-2011-1837
CVE-2011-3193
CVE-2011-3922
CVE-2012-0862
CVE-2012-4929
CVE-2012-6093
CVE-2013-0254
CVE-2013-2062
CVE-2013-2124
CVE-2013-4342
CVE-2013-4419
CVE-2013-4549
CVE-2014-0190
CVE-2014-0222
CVE-2014-7300
CVE-2014-9687
CVE-2015-0295
CVE-2015-0848
CVE-2015-1858
CVE-2015-1859
CVE-2015-1860
CVE-2015-2304
CVE-2015-4037
CVE-2015-4588
CVE-2015-4680
CVE-2015-4695
CVE-2015-4696
CVE-2015-5239
CVE-2015-6815
CVE-2015-7311
CVE-2015-7835
CVE-2015-7969
CVE-2015-7971
CVE-2016-10028
CVE-2016-10029
CVE-2016-10155
CVE-2016-1572
CVE-2016-5418
CVE-2016-5844
CVE-2016-6250
CVE-2016-8687
CVE-2016-8688
CVE-2016-8689
CVE-2016-9921
CVE-2016-9922
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163
CVE-2017-2615
CVE-2017-2620
CVE-2017-3167
CVE-2017-3169
CVE-2017-5525
CVE-2017-5526
CVE-2017-5552
CVE-2017-5578
CVE-2017-5667
CVE-2017-5856
CVE-2017-5857
CVE-2017-5898
CVE-2017-7679
CVE-2017-9788
CVE-2018-11212
CVE-2018-14633
CVE-2018-14634
CVE-2018-17182
CVE-2019-2422
SUSE-SU-2015:1378-1
SUSE-SU-2015:1894-1
SUSE-SU-2016:2911-1
SUSE-SU-2017:0102-1
SUSE-SU-2017:0625-1
SUSE-SU-2017:2449-1
SUSE-SU-2017:2650-1
SUSE-SU-2019:0604-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • gnome-keyring-3.20.1-lp150.2 is installed
  • OR gnome-keyring-lang-3.20.1-lp150.2 is installed
  • OR gnome-keyring-pam-3.20.1-lp150.2 is installed
  • OR libgck-modules-gnome-keyring-3.20.1-lp150.2 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • exempi-2.4.5-lp151.3.3 is installed
  • OR exempi-tools-2.4.5-lp151.3.3 is installed
  • OR libexempi-devel-2.4.5-lp151.3.3 is installed
  • OR libexempi3-2.4.5-lp151.3.3 is installed
  • OR libexempi3-32bit-2.4.5-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP3 is installed
  • AND Package Information
  • xorg-x11-libXp-7.4-1.18 is installed
  • OR xorg-x11-libXp-32bit-7.4-1.18 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 11 SP4 is installed
  • AND libwmf-0.2.8.4-206.29.29 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND Package Information
  • libdcerpc-binding0-4.4.2-38.11 is installed
  • OR libdcerpc-binding0-32bit-4.4.2-38.11 is installed
  • OR libdcerpc0-4.4.2-38.11 is installed
  • OR libdcerpc0-32bit-4.4.2-38.11 is installed
  • OR libndr-krb5pac0-4.4.2-38.11 is installed
  • OR libndr-krb5pac0-32bit-4.4.2-38.11 is installed
  • OR libndr-nbt0-4.4.2-38.11 is installed
  • OR libndr-nbt0-32bit-4.4.2-38.11 is installed
  • OR libndr-standard0-4.4.2-38.11 is installed
  • OR libndr-standard0-32bit-4.4.2-38.11 is installed
  • OR libndr0-4.4.2-38.11 is installed
  • OR libndr0-32bit-4.4.2-38.11 is installed
  • OR libnetapi0-4.4.2-38.11 is installed
  • OR libnetapi0-32bit-4.4.2-38.11 is installed
  • OR libsamba-credentials0-4.4.2-38.11 is installed
  • OR libsamba-credentials0-32bit-4.4.2-38.11 is installed
  • OR libsamba-errors0-4.4.2-38.11 is installed
  • OR libsamba-errors0-32bit-4.4.2-38.11 is installed
  • OR libsamba-hostconfig0-4.4.2-38.11 is installed
  • OR libsamba-hostconfig0-32bit-4.4.2-38.11 is installed
  • OR libsamba-passdb0-4.4.2-38.11 is installed
  • OR libsamba-passdb0-32bit-4.4.2-38.11 is installed
  • OR libsamba-util0-4.4.2-38.11 is installed
  • OR libsamba-util0-32bit-4.4.2-38.11 is installed
  • OR libsamdb0-4.4.2-38.11 is installed
  • OR libsamdb0-32bit-4.4.2-38.11 is installed
  • OR libsmbclient0-4.4.2-38.11 is installed
  • OR libsmbclient0-32bit-4.4.2-38.11 is installed
  • OR libsmbconf0-4.4.2-38.11 is installed
  • OR libsmbconf0-32bit-4.4.2-38.11 is installed
  • OR libsmbldap0-4.4.2-38.11 is installed
  • OR libsmbldap0-32bit-4.4.2-38.11 is installed
  • OR libtevent-util0-4.4.2-38.11 is installed
  • OR libtevent-util0-32bit-4.4.2-38.11 is installed
  • OR libwbclient0-4.4.2-38.11 is installed
  • OR libwbclient0-32bit-4.4.2-38.11 is installed
  • OR samba-4.4.2-38.11 is installed
  • OR samba-client-4.4.2-38.11 is installed
  • OR samba-client-32bit-4.4.2-38.11 is installed
  • OR samba-doc-4.4.2-38.11 is installed
  • OR samba-libs-4.4.2-38.11 is installed
  • OR samba-libs-32bit-4.4.2-38.11 is installed
  • OR samba-winbind-4.4.2-38.11 is installed
  • OR samba-winbind-32bit-4.4.2-38.11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • guestfs-data-1.26.10-4 is installed
  • OR guestfs-tools-1.26.10-4 is installed
  • OR guestfsd-1.26.10-4 is installed
  • OR libguestfs0-1.26.10-4 is installed
  • OR perl-Sys-Guestfs-1.26.10-4 is installed
  • OR python-libguestfs-1.26.10-4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • apache2-2.4.16-20.10 is installed
  • OR apache2-doc-2.4.16-20.10 is installed
  • OR apache2-example-pages-2.4.16-20.10 is installed
  • OR apache2-prefork-2.4.16-20.10 is installed
  • OR apache2-utils-2.4.16-20.10 is installed
  • OR apache2-worker-2.4.16-20.10 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • ecryptfs-utils-103-7 is installed
  • OR ecryptfs-utils-32bit-103-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • openslp-2.0.0-18.15 is installed
  • OR openslp-32bit-2.0.0-18.15 is installed
  • OR openslp-server-2.0.0-18.15 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libvirt-2.0.0-27.42 is installed
  • OR libvirt-client-2.0.0-27.42 is installed
  • OR libvirt-daemon-2.0.0-27.42 is installed
  • OR libvirt-daemon-config-network-2.0.0-27.42 is installed
  • OR libvirt-daemon-config-nwfilter-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-interface-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-libxl-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-lxc-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-network-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-nodedev-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-nwfilter-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-qemu-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-secret-2.0.0-27.42 is installed
  • OR libvirt-daemon-driver-storage-2.0.0-27.42 is installed
  • OR libvirt-daemon-hooks-2.0.0-27.42 is installed
  • OR libvirt-daemon-lxc-2.0.0-27.42 is installed
  • OR libvirt-daemon-qemu-2.0.0-27.42 is installed
  • OR libvirt-daemon-xen-2.0.0-27.42 is installed
  • OR libvirt-doc-2.0.0-27.42 is installed
  • OR libvirt-lock-sanlock-2.0.0-27.42 is installed
  • OR libvirt-nss-2.0.0-27.42 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libjasper1-1.900.14-194 is installed
  • OR libjasper1-32bit-1.900.14-194 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • libecpg6-10.5-1.3 is installed
  • OR libpq5-10.5-1.3 is installed
  • OR libpq5-32bit-10.5-1.3 is installed
  • OR postgresql-init-10-17.20 is installed
  • OR postgresql10-10.5-1.3 is installed
  • OR postgresql10-contrib-10.5-1.3 is installed
  • OR postgresql10-docs-10.5-1.3 is installed
  • OR postgresql10-libs-10.5-1.3 is installed
  • OR postgresql10-server-10.5-1.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libpython2_7-1_0-2.7.13-28.11 is installed
  • OR libpython2_7-1_0-32bit-2.7.13-28.11 is installed
  • OR python-base-2.7.13-28.11 is installed
  • OR python-base-32bit-2.7.13-28.11 is installed
  • OR python-xml-2.7.13-28.11 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND Package Information
  • xen-4.7.6_04-43.39 is installed
  • OR xen-doc-html-4.7.6_04-43.39 is installed
  • OR xen-libs-4.7.6_04-43.39 is installed
  • OR xen-libs-32bit-4.7.6_04-43.39 is installed
  • OR xen-tools-4.7.6_04-43.39 is installed
  • OR xen-tools-domU-4.7.6_04-43.39 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • ghostscript-9.27-23.31 is installed
  • OR ghostscript-x11-9.27-23.31 is installed
  • BACK