Synopsis: Moderate: samba security update Advisory ID: SLSA-2017:2789-1 Issue Date: 2017-09-21 CVE Numbers: CVE-2017-2619 CVE-2017-12150 CVE-2017-12163 -- Security Fix(es): * A race condition was found in samba server. A malicious samba client could use this flaw to access files and directories in areas of the server file system not exported under the share definitions. (CVE-2017-2619) * It was found that samba did not enforce "SMB signing" when certain configuration options were enabled. A remote attacker could launch a man- in-the-middle attack and retrieve information in plain-text. (CVE-2017-12150) * An information leak flaw was found in the way SMB1 protocol was implemented by Samba. A malicious client could use this flaw to dump server memory contents to a file on the samba share or to a shared printer, though the exact area of server memory cannot be controlled by the attacker. (CVE-2017-12163) -- SL6 x86_64 libsmbclient-3.6.23-45.el6_9.i686.rpm libsmbclient-3.6.23-45.el6_9.x86_64.rpm samba-client-3.6.23-45.el6_9.x86_64.rpm samba-common-3.6.23-45.el6_9.i686.rpm samba-common-3.6.23-45.el6_9.x86_64.rpm samba-debuginfo-3.6.23-45.el6_9.i686.rpm samba-debuginfo-3.6.23-45.el6_9.x86_64.rpm samba-winbind-3.6.23-45.el6_9.x86_64.rpm samba-winbind-clients-3.6.23-45.el6_9.i686.rpm samba-winbind-clients-3.6.23-45.el6_9.x86_64.rpm libsmbclient-devel-3.6.23-45.el6_9.i686.rpm libsmbclient-devel-3.6.23-45.el6_9.x86_64.rpm samba-3.6.23-45.el6_9.x86_64.rpm samba-doc-3.6.23-45.el6_9.x86_64.rpm samba-domainjoin-gui-3.6.23-45.el6_9.x86_64.rpm samba-glusterfs-3.6.23-45.el6_9.x86_64.rpm samba-swat-3.6.23-45.el6_9.x86_64.rpm samba-winbind-devel-3.6.23-45.el6_9.i686.rpm samba-winbind-devel-3.6.23-45.el6_9.x86_64.rpm samba-winbind-krb5-locator-3.6.23-45.el6_9.x86_64.rpm i386 libsmbclient-3.6.23-45.el6_9.i686.rpm samba-client-3.6.23-45.el6_9.i686.rpm samba-common-3.6.23-45.el6_9.i686.rpm samba-debuginfo-3.6.23-45.el6_9.i686.rpm samba-winbind-3.6.23-45.el6_9.i686.rpm samba-winbind-clients-3.6.23-45.el6_9.i686.rpm libsmbclient-devel-3.6.23-45.el6_9.i686.rpm samba-3.6.23-45.el6_9.i686.rpm samba-doc-3.6.23-45.el6_9.i686.rpm samba-domainjoin-gui-3.6.23-45.el6_9.i686.rpm samba-swat-3.6.23-45.el6_9.i686.rpm samba-winbind-devel-3.6.23-45.el6_9.i686.rpm samba-winbind-krb5-locator-3.6.23-45.el6_9.i686.rpm - Scientific Linux Development Team