Oval Definition:oval:org.opensuse.security:def:56783
Revision Date:2020-12-01Version:1
Title:Security update for samba (Moderate)
Description:

This update for samba fixes the following issues:

Security issue fixed:

- CVE-2019-3880: Fixed a path/symlink traversal vulnerability, which allowed an unprivileged user to save registry files outside a share (bsc#1131060).

Non-security issues fixed:

- Fix vfs_ceph ftruncate and fallocate handling (bsc#1127153). - Abide by load_printers smb.conf parameter (bsc#1124223). - s3:winbindd: let normalize_name_map() call find_domain_from_name_noinit() (bsc#1123755). - s3:passdb: Do not return OK if we don't have pinfo set up (bsc#1099590). - s3:winbind: Fix regression (bsc#1123755).
Family:unixClass:patch
Status:Reference(s):1010685
1013882
1020108
1033054
1033914
1033915
1036943
1036944
1036945
1036946
1038856
1045340
1099590
1101676
1101677
1101678
1103342
1112368
1112397
1112417
1112421
1112432
1116686
1118754
1122208
1123755
1124223
1124593
1127153
1131060
1132666
1136037
1152107
1159913
1160968
1165631
1173798
1174205
1174628
1174757
1175691
1176069
960402
963448
963937
984684
987895
988651
988903
989721
989722
989723
989725
989726
989727
989728
989729
989730
989731
989732
989733
989734
CVE-2012-5643
CVE-2014-7141
CVE-2014-7142
CVE-2014-8962
CVE-2014-9028
CVE-2014-9749
CVE-2015-5041
CVE-2015-5400
CVE-2015-7575
CVE-2015-7981
CVE-2015-8126
CVE-2015-8472
CVE-2015-8540
CVE-2016-0402
CVE-2016-0448
CVE-2016-0466
CVE-2016-0483
CVE-2016-0494
CVE-2016-1248
CVE-2016-2037
CVE-2016-2390
CVE-2016-2569
CVE-2016-2570
CVE-2016-2571
CVE-2016-2572
CVE-2016-3458
CVE-2016-3485
CVE-2016-3498
CVE-2016-3500
CVE-2016-3503
CVE-2016-3508
CVE-2016-3511
CVE-2016-3550
CVE-2016-3552
CVE-2016-3587
CVE-2016-3598
CVE-2016-3606
CVE-2016-3610
CVE-2016-3947
CVE-2016-3948
CVE-2016-4051
CVE-2016-4052
CVE-2016-4053
CVE-2016-4054
CVE-2016-4553
CVE-2016-4554
CVE-2016-4555
CVE-2016-4556
CVE-2016-9843
CVE-2017-1000364
CVE-2017-7585
CVE-2017-7741
CVE-2017-7742
CVE-2017-8361
CVE-2017-8362
CVE-2017-8363
CVE-2017-8365
CVE-2018-3058
CVE-2018-3063
CVE-2018-3064
CVE-2018-3066
CVE-2018-3143
CVE-2018-3156
CVE-2018-3174
CVE-2018-3251
CVE-2018-3282
CVE-2019-16746
CVE-2019-2529
CVE-2019-2537
CVE-2019-3880
CVE-2019-5108
CVE-2019-6446
CVE-2019-7164
CVE-2019-7548
CVE-2020-14314
CVE-2020-14331
CVE-2020-14344
CVE-2020-14386
CVE-2020-16166
CVE-2020-1749
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
SUSE-SU-2016:0401-1
SUSE-SU-2016:2012-1
SUSE-SU-2016:2942-1
SUSE-SU-2017:0366-1
SUSE-SU-2017:1367-1
SUSE-SU-2017:1704-1
SUSE-SU-2019:0419-1
SUSE-SU-2019:1037-1
SUSE-SU-2019:2048-1
SUSE-SU-2019:2350-1
SUSE-SU-2020:0261-1
SUSE-SU-2020:2117-1
SUSE-SU-2020:2576-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP1
SUSE Linux Enterprise Server 12 SP1-LTSS
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP2-BCL
SUSE Linux Enterprise Server 12 SP2-ESPOS
SUSE Linux Enterprise Server 12 SP2-LTSS
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP4
SUSE OpenStack Cloud 7
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND chromium-66.0.3359.170-lp150.1 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libpng16-1.6.34-lp151.3.3 is installed
  • OR libpng16-16-1.6.34-lp151.3.3 is installed
  • OR libpng16-16-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-compat-devel-1.6.34-lp151.3.3 is installed
  • OR libpng16-compat-devel-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-devel-1.6.34-lp151.3.3 is installed
  • OR libpng16-devel-32bit-1.6.34-lp151.3.3 is installed
  • OR libpng16-tools-1.6.34-lp151.3.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP3 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc-binding0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libdcerpc0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-krb5pac0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-krb5pac0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-nbt0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-nbt0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-standard0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr-standard0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libndr0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libnetapi0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libnetapi0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-credentials0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-credentials0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-errors0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-errors0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-hostconfig0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-hostconfig0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-passdb0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-passdb0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-util0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamba-util0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamdb0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsamdb0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbclient0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbclient0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbconf0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbconf0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbldap0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libsmbldap0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libtevent-util0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libtevent-util0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libwbclient0-4.6.16+git.154.2998451b912-3.40 is installed
  • OR libwbclient0-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-client-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-client-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-doc-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-libs-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-libs-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-winbind-4.6.16+git.154.2998451b912-3.40 is installed
  • OR samba-winbind-32bit-4.6.16+git.154.2998451b912-3.40 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.101-14 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.101-14 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.101-14 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.101-14 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP1-LTSS is installed
  • AND Package Information
  • kernel-default-3.12.74-60.64.48 is installed
  • OR kernel-default-base-3.12.74-60.64.48 is installed
  • OR kernel-default-devel-3.12.74-60.64.48 is installed
  • OR kernel-default-man-3.12.74-60.64.48 is installed
  • OR kernel-devel-3.12.74-60.64.48 is installed
  • OR kernel-macros-3.12.74-60.64.48 is installed
  • OR kernel-source-3.12.74-60.64.48 is installed
  • OR kernel-syms-3.12.74-60.64.48 is installed
  • OR kernel-xen-3.12.74-60.64.48 is installed
  • OR kernel-xen-base-3.12.74-60.64.48 is installed
  • OR kernel-xen-devel-3.12.74-60.64.48 is installed
  • OR kgraft-patch-3_12_74-60_64_48-default-1-2 is installed
  • OR kgraft-patch-3_12_74-60_64_48-xen-1-2 is installed
  • OR kgraft-patch-SLE12-SP1_Update_17-1-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2 is installed
  • AND Package Information
  • libFLAC++6-1.3.0-11 is installed
  • OR libFLAC8-1.3.0-11 is installed
  • OR libFLAC8-32bit-1.3.0-11 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-BCL is installed
  • AND Package Information
  • MozillaFirefox-52.9.0esr-109.38 is installed
  • OR MozillaFirefox-devel-52.9.0esr-109.38 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-ESPOS is installed
  • AND Package Information
  • python-cryptography-1.3.1-7.13 is installed
  • OR python-pyOpenSSL-16.0.0-4.11 is installed
  • OR python-setuptools-18.0.1-4.8 is installed
  • OR python3-cryptography-1.3.1-7.13 is installed
  • OR python3-pyOpenSSL-16.0.0-4.11 is installed
  • OR python3-setuptools-18.0.1-4.8 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP2-LTSS is installed
  • AND Package Information
  • libzypp-16.17.20-27.52 is installed
  • OR zypper-1.13.45-18.33 is installed
  • OR zypper-log-1.13.45-18.33 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • java-1_8_0-openjdk-1.8.0.131-26 is installed
  • OR java-1_8_0-openjdk-demo-1.8.0.131-26 is installed
  • OR java-1_8_0-openjdk-devel-1.8.0.131-26 is installed
  • OR java-1_8_0-openjdk-headless-1.8.0.131-26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • MozillaFirefox-60.8.0-109.83 is installed
  • OR MozillaFirefox-translations-common-60.8.0-109.83 is installed
  • OR libfreebl3-3.44.1-58.28 is installed
  • OR libfreebl3-32bit-3.44.1-58.28 is installed
  • OR libfreebl3-hmac-3.44.1-58.28 is installed
  • OR libfreebl3-hmac-32bit-3.44.1-58.28 is installed
  • OR libsoftokn3-3.44.1-58.28 is installed
  • OR libsoftokn3-32bit-3.44.1-58.28 is installed
  • OR libsoftokn3-hmac-3.44.1-58.28 is installed
  • OR libsoftokn3-hmac-32bit-3.44.1-58.28 is installed
  • OR mozilla-nss-3.44.1-58.28 is installed
  • OR mozilla-nss-32bit-3.44.1-58.28 is installed
  • OR mozilla-nss-certs-3.44.1-58.28 is installed
  • OR mozilla-nss-certs-32bit-3.44.1-58.28 is installed
  • OR mozilla-nss-sysinit-3.44.1-58.28 is installed
  • OR mozilla-nss-sysinit-32bit-3.44.1-58.28 is installed
  • OR mozilla-nss-tools-3.44.1-58.28 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_113-default-4-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_30-4-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • libldap-2_4-2-2.4.41-18.40 is installed
  • OR libldap-2_4-2-32bit-2.4.41-18.40 is installed
  • OR openldap2-2.4.41-18.40 is installed
  • OR openldap2-back-meta-2.4.41-18.40 is installed
  • OR openldap2-client-2.4.41-18.40 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 7 is installed
  • AND python-SQLAlchemy-1.0.14-4.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND Package Information
  • dovecot22-2.2.31-19.17 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.17 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.17 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • git-2.26.0-27.27 is installed
  • OR git-core-2.26.0-27.27 is installed
  • OR libpcre2-16-0-10.34-1.3 is installed
  • OR libpcre2-32-0-10.34-1.3 is installed
  • OR libpcre2-8-0-10.34-1.3 is installed
  • OR libpcre2-posix2-10.34-1.3 is installed
  • OR pcre2-10.34-1.3 is installed
  • OR perl-CGI-4.38-1.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND python-Django1-1.11.23-3.9 is installed
  • BACK