USN-3158-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-3158-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3158-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-3158-1
Related
Published
2016-12-19T17:34:58.822245Z
Modified
2016-12-19T17:34:58.822245Z
Summary
samba vulnerabilities
Details

Frederic Besler and others discovered that the ndrpulldnsp_nam function in Samba contained an integer overflow. An authenticated attacker could use this to gain administrative privileges. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-2123)

Simo Sorce discovered that that Samba clients always requested a forwardable ticket when using Kerberos authentication. An attacker could use this to impersonate an authenticated user or service. (CVE-2016-2125)

Volker Lendecke discovered that Kerberos PAC validation implementation in Samba contained multiple vulnerabilities. An authenticated attacker could use this to cause a denial of service or gain administrative privileges. This issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS, and Ubuntu 16.10. (CVE-2016-2126)

References

Affected packages

Ubuntu:14.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.14.04.4?arch=src?distro=trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.14.04.4

Affected versions

2:3.*

2:3.6.18-1ubuntu3

2:4.*

2:4.0.10+dfsg-4ubuntu2
2:4.0.13+dfsg-1ubuntu1
2:4.1.3+dfsg-2ubuntu2
2:4.1.3+dfsg-2ubuntu3
2:4.1.3+dfsg-2ubuntu4
2:4.1.3+dfsg-2ubuntu5
2:4.1.6+dfsg-1ubuntu1
2:4.1.6+dfsg-1ubuntu2
2:4.1.6+dfsg-1ubuntu2.14.04.1
2:4.1.6+dfsg-1ubuntu2.14.04.2
2:4.1.6+dfsg-1ubuntu2.14.04.3
2:4.1.6+dfsg-1ubuntu2.14.04.4
2:4.1.6+dfsg-1ubuntu2.14.04.5
2:4.1.6+dfsg-1ubuntu2.14.04.7
2:4.1.6+dfsg-1ubuntu2.14.04.8
2:4.1.6+dfsg-1ubuntu2.14.04.9
2:4.1.6+dfsg-1ubuntu2.14.04.11
2:4.1.6+dfsg-1ubuntu2.14.04.12
2:4.1.6+dfsg-1ubuntu2.14.04.13
2:4.3.8+dfsg-0ubuntu0.14.04.2
2:4.3.9+dfsg-0ubuntu0.14.04.1
2:4.3.9+dfsg-0ubuntu0.14.04.3
2:4.3.11+dfsg-0ubuntu0.14.04.1
2:4.3.11+dfsg-0ubuntu0.14.04.2
2:4.3.11+dfsg-0ubuntu0.14.04.3

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbsharemodes0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-doc": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbsharemodes0": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "python-samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbsharemodes-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbsharemodes-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libpam-smbpass-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.14.04.4",
            "libpam-smbpass": "2:4.3.11+dfsg-0ubuntu0.14.04.4"
        }
    ]
}

Ubuntu:16.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.16.04.3?arch=src?distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.16.04.3

Affected versions

2:4.*

2:4.1.17+dfsg-4ubuntu2
2:4.1.20+dfsg-1ubuntu1
2:4.1.20+dfsg-1ubuntu2
2:4.1.20+dfsg-1ubuntu3
2:4.1.20+dfsg-1ubuntu5
2:4.3.3+dfsg-1ubuntu1
2:4.3.3+dfsg-1ubuntu2
2:4.3.3+dfsg-1ubuntu3
2:4.3.6+dfsg-1ubuntu1
2:4.3.8+dfsg-0ubuntu1
2:4.3.9+dfsg-0ubuntu0.16.04.1
2:4.3.9+dfsg-0ubuntu0.16.04.2
2:4.3.9+dfsg-0ubuntu0.16.04.3
2:4.3.11+dfsg-0ubuntu0.16.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.3",
            "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.3"
        }
    ]
}