SUSE-SU-2018:1687-1

Source
https://www.suse.com/support/update/announcement/2018/suse-su-20181687-1/
Import Source
https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2018:1687-1.json
JSON Data
https://api.osv.dev/v1/vulns/SUSE-SU-2018:1687-1
Related
Published
2018-06-13T12:44:04Z
Modified
2018-06-13T12:44:04Z
Summary
Security update for samba
Details

Samba was updated to 4.6.14, fixing bugs and security issues:

Version update to 4.6.14 (bsc#1093664):

  • vfs_ceph: add fake async pwrite/pread send/recv hooks; (bso#13425).
  • Fix memory leak in vfs_ceph; (bso#13424).
  • winbind: avoid using fstrcpy(dcname,...) in dualinit_connection; (bso#13294).
  • s3:smb2_server: correctly maintain request counters for compound requests; (bso#13215).
  • s3: smbd: Unix extensions attempts to change wrong field in fchown call; (bso#13375).
  • s3:smbd: map nterror on smb2_flush errorpath; (bso#13338).
  • vfsglusterfs: Fix the wrong pointer being sent in glfsfsync_async; (bso#13297).
  • s3: smbd: Fix possible directory fd leak if the underlying OS doesn't support fdopendir(); (bso#13270).
  • s3: ldap: Ensure the ADS_STRUCT pointer doesn't get freed on error, we don't own it here; (bso#13244).
  • s3:libsmb: allow -U'\administrator' to work; (bso#13206).
  • CVE-2018-1057: s4:dsdb: fix unprivileged password changes; (bso#13272); (bsc#1081024).
  • s3:smbd: Do not crash if we fail to init the session table; (bso#13315).
  • libsmb: Use smb2 tcon if connprotocol >= SMB202; (bso#13310).
  • smbXcli: Add 'forcechannelsequence'; (bso#13215).
  • smbd: Fix channel sequence number checks for long-running requests; (bso#13215).
  • s3:smb2_server: allow logoff, close, unlock, cancel and echo on expired sessions; (bso#13197).
  • s3:smbd: return the correct error for cancelled SMB2 notifies on expired sessions; (bso#13197).
  • samba: Only use async signal-safe functions in signal handler; (bso#13240).
  • subnet: Avoid a segfault when renaming subnet objects; (bso#13031).

  • Fix vfs_ceph with 'aio read size' or 'aio write size' > 0; (bsc#1093664).

    • vfs_ceph: add fake async pwrite/pread send/recv hooks; (bso#13425).
    • Fix memory leak in vfs_ceph; (bso#13424).
References

Affected packages

SUSE:Linux Enterprise Desktop 12 SP3 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "libsamba-credentials0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-credentials0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-doc": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}

SUSE:Linux Enterprise High Availability Extension 12 SP3 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "ctdb": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}

SUSE:Linux Enterprise Software Development Kit 12 SP3 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "libndr-nbt-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient-devel": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-core-devel": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}

SUSE:Linux Enterprise Server 12 SP3 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "libsamba-credentials0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-credentials0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-doc": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}

SUSE:Linux Enterprise Server for SAP Applications 12 SP3 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "libsamba-credentials0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-credentials0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-doc": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libtevent-util0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-client-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-passdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-libs-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamdb0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba": "4.6.14+git.150.1540e575faf-3.24.1",
            "libwbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc0": "4.6.14+git.150.1540e575faf-3.24.1",
            "samba-winbind-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-errors0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsamba-hostconfig0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libdcerpc-binding0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbconf0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libnetapi0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbldap0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-krb5pac0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-standard0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libndr-nbt0": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0-32bit": "4.6.14+git.150.1540e575faf-3.24.1",
            "libsmbclient0": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}

SUSE:Enterprise Storage 5 / samba

Package

Name
samba
Purl
purl:rpm/suse/samba&distro=SUSE%20Enterprise%20Storage%205

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.6.14+git.150.1540e575faf-3.24.1

Ecosystem specific

{
    "binaries": [
        {
            "samba-ceph": "4.6.14+git.150.1540e575faf-3.24.1",
            "ctdb": "4.6.14+git.150.1540e575faf-3.24.1"
        }
    ]
}