MGASA-2023-0127

Source
https://advisories.mageia.org/MGASA-2023-0127.html
Import Source
https://advisories.mageia.org/MGASA-2023-0127.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2023-0127
Related
Published
2023-04-06T21:20:12Z
Modified
2023-04-06T20:15:51Z
Summary
Updated ldb/samba packages fix security vulnerability
Details

Deletion of AD DC "dnsHostname" attribute by unprivileged authenticated users (CVE-2023-0225) Read access controlled AD LDAP attributes (CVE-2023-0614) Cleartext password sending by AD DC admin tool (CVE-2023-0922)

References
Credits

Affected packages

Mageia:8 / ldb

Package

Name
ldb
Purl
pkg:rpm/mageia/ldb?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.5.3-1.mga8

Ecosystem specific

{
    "section": "core"
}

Mageia:8 / samba

Package

Name
samba
Purl
pkg:rpm/mageia/samba?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.16.10-1.mga8

Ecosystem specific

{
    "section": "core"
}