Oval Definition:oval:org.opensuse.security:def:78841
Revision Date:2017-11-10Version:1
Title:Security update for samba (Moderate)
Description:



This update for samba fixes several issues.

These security issues were fixed:

- CVE-2017-12163: Prevent client short SMB1 write from writing server memory to file, leaking information from the server to the client (bsc#1058624). - CVE-2017-12150: Always enforce smb signing when it is configured (bsc#1058622). - CVE-2017-12151: Keep required encryption across SMB3 dfs redirects (bsc#1058565).

This non-security issue was fixed:

- Fix error where short name length was read as 2 bytes, should be 1 (bsc#1042419)
Family:unixClass:patch
Status:Reference(s):1042419
1058565
1058622
1058624
1064016
1065892
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163
SUSE-SU-2017:2971-1
Platform(s):SUSE Linux Enterprise Desktop 12 SP2
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP2 is installed
  • AND libdcerpc-atsvc0-4.2.4-28.21.1 is installed
  • BACK