Oval Definition:oval:org.opensuse.security:def:61036
Revision Date:2020-12-01Version:1
Title:Security update for samba (Important)
Description:

This update for samba fixes the following issues:

- ZeroLogon: An elevation of privilege was possible with some configurations when an attacker established a vulnerable Netlogon secure channel connection to a domain controller, using the Netlogon Remote Protocol (MS-NRPC) (CVE-2020-1472, bsc#1176579).

- Fixed an issue where multiple home folders were created(bsc#1174316, bso#13369).

- Fixed an issue where the net command was unable to negotiate SMB2 (bsc#1174120);
Family:unixClass:patch
Status:Reference(s):1004995
1005778
1005780
1005781
1012382
1012917
1015342
1015343
1019784
1022476
1022595
1022912
1024296
1024376
1029102
1029516
1031395
1031492
1031717
1032029
1033238
1036873
1037120
1037838
1038078
1038085
1038865
1040153
1040182
1040258
1040614
1040942
1040968
1043652
1043758
1043900
1045290
1046750
1048325
1048585
1052829
1053472
1060279
1062129
1066163
1066223
1068032
1068038
1068569
1068689
1068984
1069138
1069160
1070052
1070799
1072163
1072484
1072947
1073229
1073928
1074134
1074488
1074621
1074709
1074839
1074847
1075066
1075078
1075087
1075091
1075397
1075428
1075617
1075621
1075627
1075811
1075994
1076017
1076110
1076187
1076232
1076805
1076847
1076872
1076899
1077068
1077560
1077592
1077704
1077871
1078002
1078662
1078681
1080740
1084300
1092061
1111331
1123156
1139885
1139886
1140100
1140102
1140103
1140106
1140110
1140111
1140501
1140513
1140534
1140538
1140554
1140664
1140666
1140669
1140673
1141171
1146873
1149792
1149811
1157888
1158003
1158004
1158005
1158006
1158007
1160024
1160467
1160468
1161066
1161181
1163018
1166240
1167152
1167976
1168140
1168142
1168930
1169392
1169605
1169786
1169936
1170302
1170741
1170939
1170940
1171550
1172205
1173986
1174120
1174316
1174420
1176579
1176756
1178512
963844
966170
966172
973818
982303
985025
986216
CVE-2017-15129
CVE-2017-16852
CVE-2017-17712
CVE-2017-17862
CVE-2017-17864
CVE-2017-18017
CVE-2017-5715
CVE-2017-7753
CVE-2017-7779
CVE-2017-7782
CVE-2017-7784
CVE-2017-7785
CVE-2017-7786
CVE-2017-7787
CVE-2017-7791
CVE-2017-7792
CVE-2017-7798
CVE-2017-7800
CVE-2017-7801
CVE-2017-7802
CVE-2017-7803
CVE-2017-7804
CVE-2017-7807
CVE-2017-9217
CVE-2017-9445
CVE-2018-0494
CVE-2018-1000004
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-5332
CVE-2018-5333
CVE-2018-7738
CVE-2019-11091
CVE-2019-12068
CVE-2019-12974
CVE-2019-12975
CVE-2019-12976
CVE-2019-12978
CVE-2019-12979
CVE-2019-13133
CVE-2019-13134
CVE-2019-13135
CVE-2019-13295
CVE-2019-13297
CVE-2019-13300
CVE-2019-13301
CVE-2019-13307
CVE-2019-13308
CVE-2019-13310
CVE-2019-13311
CVE-2019-13391
CVE-2019-13454
CVE-2019-14896
CVE-2019-14897
CVE-2019-15890
CVE-2019-19577
CVE-2019-19578
CVE-2019-19579
CVE-2019-19580
CVE-2019-19581
CVE-2019-19583
CVE-2019-6778
CVE-2020-0543
CVE-2020-11008
CVE-2020-11739
CVE-2020-11740
CVE-2020-11741
CVE-2020-11742
CVE-2020-1472
CVE-2020-15673
CVE-2020-15676
CVE-2020-15677
CVE-2020-15678
CVE-2020-1711
CVE-2020-1983
CVE-2020-2752
CVE-2020-2812
CVE-2020-28196
CVE-2020-5260
CVE-2020-7039
CVE-2020-7211
CVE-2020-8608
SUSE-SU-2017:2031-1
SUSE-SU-2017:2589-1
SUSE-SU-2017:3215-1
SUSE-SU-2018:0383-1
SUSE-SU-2018:1373-1
SUSE-SU-2018:3926-1
SUSE-SU-2020:1538-1
SUSE-SU-2020:2721-1
SUSE-SU-2020:3379-1
Platform(s):openSUSE Leap 15.1
openSUSE Leap 15.2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-BCL
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-ESPOS
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • libnetpbm-devel-10.80.1-lp151.4.3 is installed
  • OR libnetpbm11-10.80.1-lp151.4.3 is installed
  • OR libnetpbm11-32bit-10.80.1-lp151.4.3 is installed
  • OR netpbm-10.80.1-lp151.4.3 is installed
  • OR netpbm-vulnerable-10.80.1-lp151.4.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.2 is installed
  • AND Package Information
  • ghostscript-9.52-lp152.2.4 is installed
  • OR ghostscript-devel-9.52-lp152.2.4 is installed
  • OR ghostscript-mini-9.52-lp152.2.4 is installed
  • OR ghostscript-mini-devel-9.52-lp152.2.4 is installed
  • OR ghostscript-x11-9.52-lp152.2.4 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libsystemd0-228-150.9 is installed
  • OR libsystemd0-32bit-228-150.9 is installed
  • OR libudev1-228-150.9 is installed
  • OR libudev1-32bit-228-150.9 is installed
  • OR systemd-228-150.9 is installed
  • OR systemd-32bit-228-150.9 is installed
  • OR systemd-bash-completion-228-150.9 is installed
  • OR systemd-sysvinit-228-150.9 is installed
  • OR udev-228-150.9 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-BCL is installed
  • AND Package Information
  • qemu-2.9.1-6.44 is installed
  • OR qemu-block-curl-2.9.1-6.44 is installed
  • OR qemu-block-iscsi-2.9.1-6.44 is installed
  • OR qemu-block-rbd-2.9.1-6.44 is installed
  • OR qemu-block-ssh-2.9.1-6.44 is installed
  • OR qemu-guest-agent-2.9.1-6.44 is installed
  • OR qemu-ipxe-1.0.0+-6.44 is installed
  • OR qemu-kvm-2.9.1-6.44 is installed
  • OR qemu-lang-2.9.1-6.44 is installed
  • OR qemu-seabios-1.10.2-6.44 is installed
  • OR qemu-sgabios-8-6.44 is installed
  • OR qemu-tools-2.9.1-6.44 is installed
  • OR qemu-vgabios-1.10.2-6.44 is installed
  • OR qemu-x86-2.9.1-6.44 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND ucode-intel-20190618-13.47 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_113-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_30-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • ImageMagick-6.8.8.1-71.126 is installed
  • OR ImageMagick-config-6-SUSE-6.8.8.1-71.126 is installed
  • OR ImageMagick-config-6-upstream-6.8.8.1-71.126 is installed
  • OR libMagickCore-6_Q16-1-6.8.8.1-71.126 is installed
  • OR libMagickWand-6_Q16-1-6.8.8.1-71.126 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND binutils-2.31-9.26 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-ESPOS is installed
  • AND Package Information
  • LibVNCServer-0.9.9-17.31 is installed
  • OR libvncclient0-0.9.9-17.31 is installed
  • OR libvncserver0-0.9.9-17.31 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • java-1_7_1-ibm-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-alsa-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-devel-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-jdbc-1.7.1_sr4.70-38.56 is installed
  • OR java-1_7_1-ibm-plugin-1.7.1_sr4.70-38.56 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND python-Django1-1.11.20-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • libdcerpc-binding0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libdcerpc-binding0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libdcerpc0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libdcerpc0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-krb5pac0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-krb5pac0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-nbt0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-nbt0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-standard0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr-standard0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libndr0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libnetapi0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libnetapi0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-credentials0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-credentials0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-errors0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-errors0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-hostconfig0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-hostconfig0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-passdb0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-passdb0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-util0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamba-util0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamdb0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsamdb0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbclient0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbclient0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbconf0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbconf0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbldap0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libsmbldap0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libtevent-util0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libtevent-util0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libwbclient0-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR libwbclient0-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-client-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-client-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-doc-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-libs-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-libs-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-winbind-4.6.16+git.237.40a3f495f75-3.55 is installed
  • OR samba-winbind-32bit-4.6.16+git.237.40a3f495f75-3.55 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-3.3 is installed
  • OR crowbar-6.0+git.1561125496.b7508480-3.6 is installed
  • OR crowbar-core-6.0+git.1562154525.5e2983308-3.3 is installed
  • OR crowbar-core-branding-upstream-6.0+git.1562154525.5e2983308-3.3 is installed
  • OR crowbar-devel-6.0+git.1561125496.b7508480-3.6 is installed
  • OR crowbar-ha-6.0+git.1560951093.4af1ee5-3.3 is installed
  • OR crowbar-openstack-6.0+git.1562153583.4735fcf34-3.3 is installed
  • OR documentation-suse-openstack-cloud-crowbar-deployment-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-crowbar-operations-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-supplement-9.20190621-3.3 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-6.3 is installed
  • OR grafana-5.3.3-3.3 is installed
  • OR grafana-monasca-ui-drilldown-1.14.1~dev7-3.3 is installed
  • OR openstack-ceilometer-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-central-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-compute-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-ipmi-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-notification-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-polling-11.0.2~dev13-3.3 is installed
  • OR openstack-cinder-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-api-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-backup-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-scheduler-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-volume-13.0.6~dev12-3.3 is installed
  • OR openstack-dashboard-14.0.4~dev4-3.3 is installed
  • OR openstack-designate-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-agent-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-api-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-central-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-producer-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-sink-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-worker-7.0.1~dev20-3.3 is installed
  • OR openstack-heat-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-cfn-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-engine-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-plugin-heat_docker-11.0.3~dev5-3.3 is installed
  • OR openstack-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR openstack-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR openstack-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR openstack-ironic-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-api-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-conductor-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-python-agent-3.3.2~dev13-3.3 is installed
  • OR openstack-keystone-14.1.1~dev7-3.3 is installed
  • OR openstack-magnum-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-api-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-conductor-7.1.1~dev24-3.3 is installed
  • OR openstack-manila-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-api-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-data-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-scheduler-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-share-7.3.1~dev2-4.3 is installed
  • OR openstack-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR openstack-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR openstack-neutron-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-dhcp-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR openstack-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR openstack-neutron-ha-tool-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-l3-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-lbaas-agent-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-macvtap-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metadata-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metering-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-server-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR openstack-neutron-vyatta-agent-13.0.2~dev4-3.3 is installed
  • OR openstack-nova-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-cells-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-compute-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-conductor-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-console-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-novncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-placement-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-scheduler-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-serialproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-vncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-octavia-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-amphora-agent-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-api-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-health-manager-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-housekeeping-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-worker-3.1.2~dev2-3.3 is installed
  • OR python-barbican-tempest-plugin-0.1.0-4.3 is installed
  • OR python-ceilometer-11.0.2~dev13-3.3 is installed
  • OR python-cinder-13.0.6~dev12-3.3 is installed
  • OR python-cinderclient-4.0.2-3.3 is installed
  • OR python-cinderclient-doc-4.0.2-3.3 is installed
  • OR python-designate-7.0.1~dev20-3.3 is installed
  • OR python-heat-11.0.3~dev5-3.3 is installed
  • OR python-horizon-14.0.4~dev4-3.3 is installed
  • OR python-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR python-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR python-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR python-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR python-ironic-11.1.4~dev2-3.3 is installed
  • OR python-ironicclient-2.5.2-4.3 is installed
  • OR python-ironicclient-doc-2.5.2-4.3 is installed
  • OR python-keystone-14.1.1~dev7-3.3 is installed
  • OR python-magnum-7.1.1~dev24-3.3 is installed
  • OR python-manila-7.3.1~dev2-4.3 is installed
  • OR python-manila-tempest-plugin-0.1.0-3.3 is installed
  • OR python-manilaclient-1.24.2-3.3 is installed
  • OR python-manilaclient-doc-1.24.2-3.3 is installed
  • OR python-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR python-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR python-neutron-13.0.4~dev89-3.3 is installed
  • OR python-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR python-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR python-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR python-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR python-nova-18.2.2~dev9-3.3 is installed
  • OR python-octavia-3.1.2~dev2-3.3 is installed
  • OR python-openstack_auth-14.0.4~dev4-3.3 is installed
  • OR python-os-brick-2.5.7-3.3 is installed
  • OR python-os-brick-common-2.5.7-3.3 is installed
  • OR python-oslo.db-4.40.2-3.3 is installed
  • OR python-proliantutils-2.8.4-1 is installed
  • OR supportutils-plugin-suse-openstack-cloud-9.0.1562324636.e7046a3-1 is installed
  • BACK