USN-3092-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-3092-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3092-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-3092-1
Related
Published
2016-09-28T16:52:30.322159Z
Modified
2016-09-28T16:52:30.322159Z
Summary
samba vulnerability
Details

Stefan Metzmacher discovered that Samba incorrectly handled certain flags in SMB2/3 client connections. A remote attacker could use this issue to disable client signing and impersonate servers by performing a machine-in-the-middle attack.

Samba has been updated to 4.3.11 in Ubuntu 14.04 LTS and Ubuntu 16.04 LTS. In addition to the security fix, the updated packages contain bug fixes, new features, and possibly incompatible changes.

References

Affected packages

Ubuntu:14.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.14.04.1?arch=src?distro=trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.14.04.1

Affected versions

2:3.*

2:3.6.18-1ubuntu3

2:4.*

2:4.0.10+dfsg-4ubuntu2
2:4.0.13+dfsg-1ubuntu1
2:4.1.3+dfsg-2ubuntu2
2:4.1.3+dfsg-2ubuntu3
2:4.1.3+dfsg-2ubuntu4
2:4.1.3+dfsg-2ubuntu5
2:4.1.6+dfsg-1ubuntu1
2:4.1.6+dfsg-1ubuntu2
2:4.1.6+dfsg-1ubuntu2.14.04.1
2:4.1.6+dfsg-1ubuntu2.14.04.2
2:4.1.6+dfsg-1ubuntu2.14.04.3
2:4.1.6+dfsg-1ubuntu2.14.04.4
2:4.1.6+dfsg-1ubuntu2.14.04.5
2:4.1.6+dfsg-1ubuntu2.14.04.7
2:4.1.6+dfsg-1ubuntu2.14.04.8
2:4.1.6+dfsg-1ubuntu2.14.04.9
2:4.1.6+dfsg-1ubuntu2.14.04.11
2:4.1.6+dfsg-1ubuntu2.14.04.12
2:4.1.6+dfsg-1ubuntu2.14.04.13
2:4.3.8+dfsg-0ubuntu0.14.04.2
2:4.3.9+dfsg-0ubuntu0.14.04.1
2:4.3.9+dfsg-0ubuntu0.14.04.3

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbsharemodes0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-doc": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbsharemodes0": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "python-samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbsharemodes-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbsharemodes-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libpam-smbpass-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.14.04.1",
            "libpam-smbpass": "2:4.3.11+dfsg-0ubuntu0.14.04.1"
        }
    ]
}

Ubuntu:16.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.16.04.1?arch=src?distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.16.04.1

Affected versions

2:4.*

2:4.1.17+dfsg-4ubuntu2
2:4.1.20+dfsg-1ubuntu1
2:4.1.20+dfsg-1ubuntu2
2:4.1.20+dfsg-1ubuntu3
2:4.1.20+dfsg-1ubuntu5
2:4.3.3+dfsg-1ubuntu1
2:4.3.3+dfsg-1ubuntu2
2:4.3.3+dfsg-1ubuntu3
2:4.3.6+dfsg-1ubuntu1
2:4.3.8+dfsg-0ubuntu1
2:4.3.9+dfsg-0ubuntu0.16.04.1
2:4.3.9+dfsg-0ubuntu0.16.04.2
2:4.3.9+dfsg-0ubuntu0.16.04.3

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.1",
            "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.1"
        }
    ]
}