Updated samba packages fix security vulnerabilities:
A malicious server could return a directory entry that could corrupt
libsmbclient memory (CVE-2018-10858).
Missing access control checks allow discovery of confidential attribute
values via authenticated LDAP search expressions (CVE-2018-10919).
The samba package has been updated to version 4.6.16, fixing these issues
and other bugs.
- https://bugs.mageia.org/show_bug.cgi?id=23444
-
-
-
-
-
-
- https://www.cve.org/CVERecord?id=CVE-2018-10858
- https://www.cve.org/CVERecord?id=CVE-2018-10919
- 6/core/samba-4.6.16-1.mga6
Get the latest Linux and open source security news straight to your inbox.