SCIENTIFIC-LINUX-ERRATA Archives

November 2017

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Date:
Mon, 27 Nov 2017 14:54:29 -0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (61 lines)
Synopsis:          Important: samba security update
Advisory ID:       SLSA-2017:3260-1
Issue Date:        2017-11-27
CVE Numbers:       CVE-2017-14746
                   CVE-2017-15275
--

Security Fix(es):

* A use-after-free flaw was found in the way samba servers handled certain
SMB1 requests. An unauthenticated attacker could send specially-crafted
SMB1 requests to cause the server to crash or execute arbitrary code.
(CVE-2017-14746)

* A memory disclosure flaw was found in samba. An attacker could retrieve
parts of server memory, which could contain potentially sensitive data, by
sending specially-crafted requests to the samba server. (CVE-2017-15275)
--

SL7
  x86_64
    libsmbclient-4.6.2-12.el7_4.i686.rpm
    libsmbclient-4.6.2-12.el7_4.x86_64.rpm
    libwbclient-4.6.2-12.el7_4.i686.rpm
    libwbclient-4.6.2-12.el7_4.x86_64.rpm
    samba-client-4.6.2-12.el7_4.x86_64.rpm
    samba-client-libs-4.6.2-12.el7_4.i686.rpm
    samba-client-libs-4.6.2-12.el7_4.x86_64.rpm
    samba-common-libs-4.6.2-12.el7_4.x86_64.rpm
    samba-common-tools-4.6.2-12.el7_4.x86_64.rpm
    samba-debuginfo-4.6.2-12.el7_4.i686.rpm
    samba-debuginfo-4.6.2-12.el7_4.x86_64.rpm
    samba-krb5-printing-4.6.2-12.el7_4.x86_64.rpm
    samba-libs-4.6.2-12.el7_4.i686.rpm
    samba-libs-4.6.2-12.el7_4.x86_64.rpm
    samba-winbind-4.6.2-12.el7_4.x86_64.rpm
    samba-winbind-clients-4.6.2-12.el7_4.x86_64.rpm
    samba-winbind-modules-4.6.2-12.el7_4.i686.rpm
    samba-winbind-modules-4.6.2-12.el7_4.x86_64.rpm
    libsmbclient-devel-4.6.2-12.el7_4.i686.rpm
    libsmbclient-devel-4.6.2-12.el7_4.x86_64.rpm
    libwbclient-devel-4.6.2-12.el7_4.i686.rpm
    libwbclient-devel-4.6.2-12.el7_4.x86_64.rpm
    samba-4.6.2-12.el7_4.x86_64.rpm
    samba-dc-4.6.2-12.el7_4.x86_64.rpm
    samba-dc-libs-4.6.2-12.el7_4.x86_64.rpm
    samba-devel-4.6.2-12.el7_4.i686.rpm
    samba-devel-4.6.2-12.el7_4.x86_64.rpm
    samba-python-4.6.2-12.el7_4.x86_64.rpm
    samba-test-4.6.2-12.el7_4.x86_64.rpm
    samba-test-libs-4.6.2-12.el7_4.i686.rpm
    samba-test-libs-4.6.2-12.el7_4.x86_64.rpm
    samba-vfs-glusterfs-4.6.2-12.el7_4.x86_64.rpm
    samba-winbind-krb5-locator-4.6.2-12.el7_4.x86_64.rpm
    samba-4.6.2-12.el7_4.src.rpm
  noarch
    samba-common-4.6.2-12.el7_4.noarch.rpm
    samba-pidl-4.6.2-12.el7_4.noarch.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2