SUSE-SU-2019:1040-1 -- SLES samba, avahi, cups, gamin-devel, gnutls, ldb-debugsource, libavahi-client3, libavahi-common3, libavahi-core7, libavahi-devel, libavahi-glib-devel, libavahi-glib1, libavahi-gobject0, libavahi-ui-gtk3-0, libavahi-ui0, libcups2, libcupscgi1, libcupsimage2, libcupsmime1, libcupsppdc1, libdcerpc-binding0, libdcerpc-devel, libdcerpc-samr-devel, libdcerpc-samr0, libdcerpc0, libdns_sd, libfam0-gamin, libgamin-1-0, libgnutls-devel, libgnutls30, libgnutlsxx-devel, libgnutlsxx28, libhogweed4, libhowl0, libldb-devel, libldb1, libndr-devel, libndr-krb5pac-devel, libndr-krb5pac0, libndr-nbt-devel, libndr-nbt0, libndr-standard-devel, libndr-standard0, libndr0, libnetapi-devel, libnetapi0, libnettle-debugsource, libnettle-devel, libnettle6, libp11-kit0, libsamba-credentials-devel, libsamba-credentials0, libsamba-errors-devel, libsamba-errors0, libsamba-hostconfig-devel, libsamba-hostconfig0, libsamba-passdb-devel, libsamba-passdb0, libsamba-policy-devel, libsamba-policy0, libsamba-util-devel, libsamba-util0, libsamdb-devel, libsamdb0, libsmbclient-devel, libsmbclient0, libsmbconf-devel, libsmbconf0, libsmbldap-devel, libsmbldap2, libtalloc-devel, libtalloc2, libtasn1, libtdb-devel, libtdb1, libtevent-devel, libtevent-util-devel, libtevent-util0, libtevent0, libwbclient-devel, libwbclient0, p11-kit, python-ldb, python-talloc, python3-ldb, python3-talloc, talloc-debugsource, talloc-man, tdb-debugsource, tdb-tools, tevent-debugsource, tevent-man, typelib-1_0-Avahi-0_6, libavahi-gobject-develID: oval:org.secpod.oval:def:89050714 | Date: (C)2023-10-16 (M)2023-10-15 | Class: PATCH | Family: unix |
This update for samba fixes the following issues: Security issue fixed: - CVE-2019-3880: Fixed a path/symlink traversal vulnerability, which allowed an unprivileged user to save registry files outside a share . ldb was updated to version 1.2.4 : - Out of bound read in ldb_wildcard_compare - Hold at most 10 outstanding paged result cookies - Put "results_store" into a doubly linked list - Refuse to build Samba against a newer minor version of ldb Non-security issues fixed: - Fixed update-apparmor-samba-profile script after apparmor switched to using named profiles . - Abide to the load_printers parameter in smb.conf . - Provide the 32bit samba winbind PAM module and its dependend 32bit libraries. Platform: | SUSE Linux Enterprise Server 15 | SUSE Linux Enterprise Desktop 15 |
Product: | samba | avahi | cups | gamin-devel | gnutls | ldb-debugsource | libavahi-client3 | libavahi-common3 | libavahi-core7 | libavahi-devel | libavahi-glib-devel | libavahi-glib1 | libavahi-gobject0 | libavahi-ui-gtk3-0 | libavahi-ui0 | libcups2 | libcupscgi1 | libcupsimage2 | libcupsmime1 | libcupsppdc1 | libdcerpc-binding0 | libdcerpc-devel | libdcerpc-samr-devel | libdcerpc-samr0 | libdcerpc0 | libdns_sd | libfam0-gamin | libgamin-1-0 | libgnutls-devel | libgnutls30 | libgnutlsxx-devel | libgnutlsxx28 | libhogweed4 | libhowl0 | libldb-devel | libldb1 | libndr-devel | libndr-krb5pac-devel | libndr-krb5pac0 | libndr-nbt-devel | libndr-nbt0 | libndr-standard-devel | libndr-standard0 | libndr0 | libnetapi-devel | libnetapi0 | libnettle-debugsource | libnettle-devel | libnettle6 | libp11-kit0 | libsamba-credentials-devel | libsamba-credentials0 | libsamba-errors-devel | libsamba-errors0 | libsamba-hostconfig-devel | libsamba-hostconfig0 | libsamba-passdb-devel | libsamba-passdb0 | libsamba-policy-devel | libsamba-policy0 | libsamba-util-devel | libsamba-util0 | libsamdb-devel | libsamdb0 | libsmbclient-devel | libsmbclient0 | libsmbconf-devel | libsmbconf0 | libsmbldap-devel | libsmbldap2 | libtalloc-devel | libtalloc2 | libtasn1 | libtdb-devel | libtdb1 | libtevent-devel | libtevent-util-devel | libtevent-util0 | libtevent0 | libwbclient-devel | libwbclient0 | p11-kit | python-ldb | python-talloc | python3-ldb | python3-talloc | talloc-debugsource | talloc-man | tdb-debugsource | tdb-tools | tevent-debugsource | tevent-man | typelib-1_0-Avahi-0_6 | libavahi-gobject-devel |
|