ALSA-2023:6744

Source
https://errata.almalinux.org/9/ALSA-2023-6744.html
Import Source
https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2023:6744.json
JSON Data
https://api.osv.dev/v1/vulns/ALSA-2023:6744
Related
Published
2023-11-07T00:00:00Z
Modified
2023-11-14T12:12:32Z
Summary
Moderate: samba security update
Details

Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.

Security Fix(es):

  • samba: smbd allows client access to unix domain sockets on the file system as root (CVE-2023-3961)
  • samba: SMB clients can truncate files with read-only permissions (CVE-2023-4091)
  • samba: "rpcecho" development server allows denial of service via sleep() call on AD DC (CVE-2023-42669)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

References

Affected packages

AlmaLinux:9 / ctdb

Package

Name
ctdb

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libnetapi

Package

Name
libnetapi

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libnetapi-devel

Package

Name
libnetapi-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libsmbclient

Package

Name
libsmbclient

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libsmbclient-devel

Package

Name
libsmbclient-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libwbclient

Package

Name
libwbclient

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / libwbclient-devel

Package

Name
libwbclient-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / python3-samba

Package

Name
python3-samba

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / python3-samba-dc

Package

Name
python3-samba-dc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / python3-samba-devel

Package

Name
python3-samba-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / python3-samba-test

Package

Name
python3-samba-test

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba

Package

Name
samba

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-client

Package

Name
samba-client

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-client-libs

Package

Name
samba-client-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-common

Package

Name
samba-common

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-common-libs

Package

Name
samba-common-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-common-tools

Package

Name
samba-common-tools

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-dc-libs

Package

Name
samba-dc-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-dcerpc

Package

Name
samba-dcerpc

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-devel

Package

Name
samba-devel

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-krb5-printing

Package

Name
samba-krb5-printing

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-ldb-ldap-modules

Package

Name
samba-ldb-ldap-modules

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-libs

Package

Name
samba-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-pidl

Package

Name
samba-pidl

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-test

Package

Name
samba-test

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-test-libs

Package

Name
samba-test-libs

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-tools

Package

Name
samba-tools

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-usershares

Package

Name
samba-usershares

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-vfs-iouring

Package

Name
samba-vfs-iouring

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-winbind

Package

Name
samba-winbind

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-winbind-clients

Package

Name
samba-winbind-clients

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-winbind-krb5-locator

Package

Name
samba-winbind-krb5-locator

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-winbind-modules

Package

Name
samba-winbind-modules

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1

AlmaLinux:9 / samba-winexe

Package

Name
samba-winexe

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.6-101.el9_3.alma.1