-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2022-003403ec6b 2022-12-02 06:21:15.000431 -------------------------------------------------------------------------------- Name : samba Product : Fedora 35 Version : 4.15.12 Release : 0.fc35 URL : https://www.samba.org Summary : Server and Client software to interoperate with Windows machines Description : Samba is the standard Windows interoperability suite of programs for Linux and Unix. -------------------------------------------------------------------------------- Update Information: Update to version 4.15.12 ---- Update to version 4.15.11 - Security fixes for CVE-2022-3437 -------------------------------------------------------------------------------- ChangeLog: * Tue Nov 15 2022 Guenther Deschner- 4.15.12-0 - Update to version 4.15.12 - resolves: #2140960, #2143115 - Security fixes for CVE-2022-42898 * Wed Oct 26 2022 Guenther Deschner - 4.15.11-0 - Update to version 4.15.11 - resolves: #2137774, #2137777 - Security fixes for CVE-2022-3437 -------------------------------------------------------------------------------- References: [ 1 ] Bug #2137774 - CVE-2022-3437 samba: heap buffer overflow in GSSAPI unwrap_des() and unwrap_des3() routines of Heimdal https://bugzilla.redhat.com/show_bug.cgi?id=2137774 [ 2 ] Bug #2140960 - CVE-2022-42898 krb5: integer overflow vulnerabilities in PAC parsing https://bugzilla.redhat.com/show_bug.cgi?id=2140960 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2022-003403ec6b' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list -- [email protected] To unsubscribe send an email to [email protected] Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/[email protected] Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue