USN-4244-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-4244-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-4244-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-4244-1
Related
Published
2020-01-21T12:59:17.278513Z
Modified
2020-01-21T12:59:17.278513Z
Summary
samba vulnerabilities
Details

It was discovered that Samba did not automatically replicate ACLs set to inherit down a subtree on AD Directory, contrary to expectations. This issue was only addressed in Ubuntu 18.04 LTS, Ubuntu 19.04 and Ubuntu 19.10. (CVE-2019-14902)

Robert Święcki discovered that Samba incorrectly handled certain character conversions when the log level is set to 3 or above. In certain environments, a remote attacker could possibly use this issue to cause Samba to crash, resulting in a denial of service. (CVE-2019-14907)

Christian Naumer discovered that Samba incorrectly handled DNS zone scavenging. This issue could possibly result in some incorrect data being written to the DB. This issue only applied to Ubuntu 19.04 and Ubuntu 19.10. (CVE-2019-19344)

References

Affected packages

Ubuntu:16.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.16.04.25?arch=src?distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.16.04.25

Affected versions

2:4.*

2:4.1.17+dfsg-4ubuntu2
2:4.1.20+dfsg-1ubuntu1
2:4.1.20+dfsg-1ubuntu2
2:4.1.20+dfsg-1ubuntu3
2:4.1.20+dfsg-1ubuntu5
2:4.3.3+dfsg-1ubuntu1
2:4.3.3+dfsg-1ubuntu2
2:4.3.3+dfsg-1ubuntu3
2:4.3.6+dfsg-1ubuntu1
2:4.3.8+dfsg-0ubuntu1
2:4.3.9+dfsg-0ubuntu0.16.04.1
2:4.3.9+dfsg-0ubuntu0.16.04.2
2:4.3.9+dfsg-0ubuntu0.16.04.3
2:4.3.11+dfsg-0ubuntu0.16.04.1
2:4.3.11+dfsg-0ubuntu0.16.04.3
2:4.3.11+dfsg-0ubuntu0.16.04.5
2:4.3.11+dfsg-0ubuntu0.16.04.6
2:4.3.11+dfsg-0ubuntu0.16.04.7
2:4.3.11+dfsg-0ubuntu0.16.04.8
2:4.3.11+dfsg-0ubuntu0.16.04.9
2:4.3.11+dfsg-0ubuntu0.16.04.10
2:4.3.11+dfsg-0ubuntu0.16.04.11
2:4.3.11+dfsg-0ubuntu0.16.04.12
2:4.3.11+dfsg-0ubuntu0.16.04.13
2:4.3.11+dfsg-0ubuntu0.16.04.15
2:4.3.11+dfsg-0ubuntu0.16.04.16
2:4.3.11+dfsg-0ubuntu0.16.04.17
2:4.3.11+dfsg-0ubuntu0.16.04.18
2:4.3.11+dfsg-0ubuntu0.16.04.19
2:4.3.11+dfsg-0ubuntu0.16.04.20
2:4.3.11+dfsg-0ubuntu0.16.04.21
2:4.3.11+dfsg-0ubuntu0.16.04.23
2:4.3.11+dfsg-0ubuntu0.16.04.24

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.25",
            "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.25"
        }
    ]
}

Ubuntu:18.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.7.6+dfsg~ubuntu-0ubuntu2.15?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.7.6+dfsg~ubuntu-0ubuntu2.15

Affected versions

2:4.*

2:4.6.7+dfsg-1ubuntu3
2:4.7.1+dfsg-1ubuntu1
2:4.7.3+dfsg-1ubuntu1
2:4.7.4+dfsg-1ubuntu1
2:4.7.6+dfsg~ubuntu-0ubuntu1
2:4.7.6+dfsg~ubuntu-0ubuntu2
2:4.7.6+dfsg~ubuntu-0ubuntu2.2
2:4.7.6+dfsg~ubuntu-0ubuntu2.4
2:4.7.6+dfsg~ubuntu-0ubuntu2.5
2:4.7.6+dfsg~ubuntu-0ubuntu2.6
2:4.7.6+dfsg~ubuntu-0ubuntu2.7
2:4.7.6+dfsg~ubuntu-0ubuntu2.9
2:4.7.6+dfsg~ubuntu-0ubuntu2.10
2:4.7.6+dfsg~ubuntu-0ubuntu2.11
2:4.7.6+dfsg~ubuntu-0ubuntu2.13
2:4.7.6+dfsg~ubuntu-0ubuntu2.14

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-libs": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "registry-tools": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-common-bin": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libwbclient0-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-dsdb-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libpam-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libnss-winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-vfs-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "python-samba-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-common-bin-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-testsuite": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "smbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libsmbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libwbclient0": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libsmbclient-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "python-samba": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-dsdb-modules": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "registry-tools-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-vfs-modules-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "ctdb": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libnss-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libsmbclient-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-libs-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "winbind-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-testsuite-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-common": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libpam-winbind": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "smbclient": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "samba-dev": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "libparse-pidl-perl": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15",
            "ctdb-dbgsym": "2:4.7.6+dfsg~ubuntu-0ubuntu2.15"
        }
    ]
}