openSUSE Security Update: Security update for samba
______________________________________________________________________________

Announcement ID:    openSUSE-SU-2016:0813-1
Rating:             important
References:         #953382 #953972 #968222 #968223 
Cross-References:   CVE-2015-7560 CVE-2016-0771
Affected Products:
                    openSUSE 13.2
______________________________________________________________________________

   An update that solves two vulnerabilities and has two fixes
   is now available.

Description:


   This update for samba fixes the following issues:

   Version update to 4.1.23.
   + Getting and setting Windows ACLs on symlinks can change permissions on
     link target; CVE-2015-7560; (bso#11648); (boo#968222).
   + Fix Out-of-bounds read in internal DNS server; CVE-2016-0771;
     (bso#11128); (bso#11686); (boo#968223).

   Also fixed:
   - Ensure samlogon fallback requests are rerouted after kerberos failure;
     (bnc#953382); (bnc#953972).


Patch Instructions:

   To install this openSUSE Security Update use YaST online_update.
   Alternatively you can run the command listed for your product:

   - openSUSE 13.2:

      zypper in -t patch openSUSE-2016-359=1

   To bring your system up-to-date, use "zypper patch".


Package List:

   - openSUSE 13.2 (i586 x86_64):

      libdcerpc-atsvc-devel-4.1.23-31.1
      libdcerpc-atsvc0-4.1.23-31.1
      libdcerpc-atsvc0-debuginfo-4.1.23-31.1
      libdcerpc-binding0-4.1.23-31.1
      libdcerpc-binding0-debuginfo-4.1.23-31.1
      libdcerpc-devel-4.1.23-31.1
      libdcerpc-samr-devel-4.1.23-31.1
      libdcerpc-samr0-4.1.23-31.1
      libdcerpc-samr0-debuginfo-4.1.23-31.1
      libdcerpc0-4.1.23-31.1
      libdcerpc0-debuginfo-4.1.23-31.1
      libgensec-devel-4.1.23-31.1
      libgensec0-4.1.23-31.1
      libgensec0-debuginfo-4.1.23-31.1
      libndr-devel-4.1.23-31.1
      libndr-krb5pac-devel-4.1.23-31.1
      libndr-krb5pac0-4.1.23-31.1
      libndr-krb5pac0-debuginfo-4.1.23-31.1
      libndr-nbt-devel-4.1.23-31.1
      libndr-nbt0-4.1.23-31.1
      libndr-nbt0-debuginfo-4.1.23-31.1
      libndr-standard-devel-4.1.23-31.1
      libndr-standard0-4.1.23-31.1
      libndr-standard0-debuginfo-4.1.23-31.1
      libndr0-4.1.23-31.1
      libndr0-debuginfo-4.1.23-31.1
      libnetapi-devel-4.1.23-31.1
      libnetapi0-4.1.23-31.1
      libnetapi0-debuginfo-4.1.23-31.1
      libpdb-devel-4.1.23-31.1
      libpdb0-4.1.23-31.1
      libpdb0-debuginfo-4.1.23-31.1
      libregistry-devel-4.1.23-31.1
      libregistry0-4.1.23-31.1
      libregistry0-debuginfo-4.1.23-31.1
      libsamba-credentials-devel-4.1.23-31.1
      libsamba-credentials0-4.1.23-31.1
      libsamba-credentials0-debuginfo-4.1.23-31.1
      libsamba-hostconfig-devel-4.1.23-31.1
      libsamba-hostconfig0-4.1.23-31.1
      libsamba-hostconfig0-debuginfo-4.1.23-31.1
      libsamba-policy-devel-4.1.23-31.1
      libsamba-policy0-4.1.23-31.1
      libsamba-policy0-debuginfo-4.1.23-31.1
      libsamba-util-devel-4.1.23-31.1
      libsamba-util0-4.1.23-31.1
      libsamba-util0-debuginfo-4.1.23-31.1
      libsamdb-devel-4.1.23-31.1
      libsamdb0-4.1.23-31.1
      libsamdb0-debuginfo-4.1.23-31.1
      libsmbclient-devel-4.1.23-31.1
      libsmbclient-raw-devel-4.1.23-31.1
      libsmbclient-raw0-4.1.23-31.1
      libsmbclient-raw0-debuginfo-4.1.23-31.1
      libsmbclient0-4.1.23-31.1
      libsmbclient0-debuginfo-4.1.23-31.1
      libsmbconf-devel-4.1.23-31.1
      libsmbconf0-4.1.23-31.1
      libsmbconf0-debuginfo-4.1.23-31.1
      libsmbldap-devel-4.1.23-31.1
      libsmbldap0-4.1.23-31.1
      libsmbldap0-debuginfo-4.1.23-31.1
      libsmbsharemodes-devel-4.1.23-31.1
      libsmbsharemodes0-4.1.23-31.1
      libsmbsharemodes0-debuginfo-4.1.23-31.1
      libtevent-util-devel-4.1.23-31.1
      libtevent-util0-4.1.23-31.1
      libtevent-util0-debuginfo-4.1.23-31.1
      libwbclient-devel-4.1.23-31.1
      libwbclient0-4.1.23-31.1
      libwbclient0-debuginfo-4.1.23-31.1
      samba-4.1.23-31.1
      samba-client-4.1.23-31.1
      samba-client-debuginfo-4.1.23-31.1
      samba-core-devel-4.1.23-31.1
      samba-debuginfo-4.1.23-31.1
      samba-debugsource-4.1.23-31.1
      samba-libs-4.1.23-31.1
      samba-libs-debuginfo-4.1.23-31.1
      samba-pidl-4.1.23-31.1
      samba-python-4.1.23-31.1
      samba-python-debuginfo-4.1.23-31.1
      samba-test-4.1.23-31.1
      samba-test-debuginfo-4.1.23-31.1
      samba-test-devel-4.1.23-31.1
      samba-winbind-4.1.23-31.1
      samba-winbind-debuginfo-4.1.23-31.1

   - openSUSE 13.2 (x86_64):

      libdcerpc-atsvc0-32bit-4.1.23-31.1
      libdcerpc-atsvc0-debuginfo-32bit-4.1.23-31.1
      libdcerpc-binding0-32bit-4.1.23-31.1
      libdcerpc-binding0-debuginfo-32bit-4.1.23-31.1
      libdcerpc-samr0-32bit-4.1.23-31.1
      libdcerpc-samr0-debuginfo-32bit-4.1.23-31.1
      libdcerpc0-32bit-4.1.23-31.1
      libdcerpc0-debuginfo-32bit-4.1.23-31.1
      libgensec0-32bit-4.1.23-31.1
      libgensec0-debuginfo-32bit-4.1.23-31.1
      libndr-krb5pac0-32bit-4.1.23-31.1
      libndr-krb5pac0-debuginfo-32bit-4.1.23-31.1
      libndr-nbt0-32bit-4.1.23-31.1
      libndr-nbt0-debuginfo-32bit-4.1.23-31.1
      libndr-standard0-32bit-4.1.23-31.1
      libndr-standard0-debuginfo-32bit-4.1.23-31.1
      libndr0-32bit-4.1.23-31.1
      libndr0-debuginfo-32bit-4.1.23-31.1
      libnetapi0-32bit-4.1.23-31.1
      libnetapi0-debuginfo-32bit-4.1.23-31.1
      libpdb0-32bit-4.1.23-31.1
      libpdb0-debuginfo-32bit-4.1.23-31.1
      libregistry0-32bit-4.1.23-31.1
      libregistry0-debuginfo-32bit-4.1.23-31.1
      libsamba-credentials0-32bit-4.1.23-31.1
      libsamba-credentials0-debuginfo-32bit-4.1.23-31.1
      libsamba-hostconfig0-32bit-4.1.23-31.1
      libsamba-hostconfig0-debuginfo-32bit-4.1.23-31.1
      libsamba-policy0-32bit-4.1.23-31.1
      libsamba-policy0-debuginfo-32bit-4.1.23-31.1
      libsamba-util0-32bit-4.1.23-31.1
      libsamba-util0-debuginfo-32bit-4.1.23-31.1
      libsamdb0-32bit-4.1.23-31.1
      libsamdb0-debuginfo-32bit-4.1.23-31.1
      libsmbclient-raw0-32bit-4.1.23-31.1
      libsmbclient-raw0-debuginfo-32bit-4.1.23-31.1
      libsmbclient0-32bit-4.1.23-31.1
      libsmbclient0-debuginfo-32bit-4.1.23-31.1
      libsmbconf0-32bit-4.1.23-31.1
      libsmbconf0-debuginfo-32bit-4.1.23-31.1
      libsmbldap0-32bit-4.1.23-31.1
      libsmbldap0-debuginfo-32bit-4.1.23-31.1
      libtevent-util0-32bit-4.1.23-31.1
      libtevent-util0-debuginfo-32bit-4.1.23-31.1
      libwbclient0-32bit-4.1.23-31.1
      libwbclient0-debuginfo-32bit-4.1.23-31.1
      samba-32bit-4.1.23-31.1
      samba-client-32bit-4.1.23-31.1
      samba-client-debuginfo-32bit-4.1.23-31.1
      samba-debuginfo-32bit-4.1.23-31.1
      samba-libs-32bit-4.1.23-31.1
      samba-libs-debuginfo-32bit-4.1.23-31.1
      samba-winbind-32bit-4.1.23-31.1
      samba-winbind-debuginfo-32bit-4.1.23-31.1

   - openSUSE 13.2 (noarch):

      samba-doc-4.1.23-31.1


References:

   https://www.suse.com/security/cve/CVE-2015-7560.html
   https://www.suse.com/security/cve/CVE-2016-0771.html
   https://bugzilla.suse.com/953382
   https://bugzilla.suse.com/953972
   https://bugzilla.suse.com/968222
   https://bugzilla.suse.com/968223

openSUSE: 2016:0813-1: important: samba

March 18, 2016
An update that solves two vulnerabilities and has two fixes An update that solves two vulnerabilities and has two fixes An update that solves two vulnerabilities and has two fixes ...

Description

This update for samba fixes the following issues: Version update to 4.1.23. + Getting and setting Windows ACLs on symlinks can change permissions on link target; CVE-2015-7560; (bso#11648); (boo#968222). + Fix Out-of-bounds read in internal DNS server; CVE-2016-0771; (bso#11128); (bso#11686); (boo#968223). Also fixed: - Ensure samlogon fallback requests are rerouted after kerberos failure; (bnc#953382); (bnc#953972).

 

Patch

Patch Instructions: To install this openSUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - openSUSE 13.2: zypper in -t patch openSUSE-2016-359=1 To bring your system up-to-date, use "zypper patch".


Package List

- openSUSE 13.2 (i586 x86_64): libdcerpc-atsvc-devel-4.1.23-31.1 libdcerpc-atsvc0-4.1.23-31.1 libdcerpc-atsvc0-debuginfo-4.1.23-31.1 libdcerpc-binding0-4.1.23-31.1 libdcerpc-binding0-debuginfo-4.1.23-31.1 libdcerpc-devel-4.1.23-31.1 libdcerpc-samr-devel-4.1.23-31.1 libdcerpc-samr0-4.1.23-31.1 libdcerpc-samr0-debuginfo-4.1.23-31.1 libdcerpc0-4.1.23-31.1 libdcerpc0-debuginfo-4.1.23-31.1 libgensec-devel-4.1.23-31.1 libgensec0-4.1.23-31.1 libgensec0-debuginfo-4.1.23-31.1 libndr-devel-4.1.23-31.1 libndr-krb5pac-devel-4.1.23-31.1 libndr-krb5pac0-4.1.23-31.1 libndr-krb5pac0-debuginfo-4.1.23-31.1 libndr-nbt-devel-4.1.23-31.1 libndr-nbt0-4.1.23-31.1 libndr-nbt0-debuginfo-4.1.23-31.1 libndr-standard-devel-4.1.23-31.1 libndr-standard0-4.1.23-31.1 libndr-standard0-debuginfo-4.1.23-31.1 libndr0-4.1.23-31.1 libndr0-debuginfo-4.1.23-31.1 libnetapi-devel-4.1.23-31.1 libnetapi0-4.1.23-31.1 libnetapi0-debuginfo-4.1.23-31.1 libpdb-devel-4.1.23-31.1 libpdb0-4.1.23-31.1 libpdb0-debuginfo-4.1.23-31.1 libregistry-devel-4.1.23-31.1 libregistry0-4.1.23-31.1 libregistry0-debuginfo-4.1.23-31.1 libsamba-credentials-devel-4.1.23-31.1 libsamba-credentials0-4.1.23-31.1 libsamba-credentials0-debuginfo-4.1.23-31.1 libsamba-hostconfig-devel-4.1.23-31.1 libsamba-hostconfig0-4.1.23-31.1 libsamba-hostconfig0-debuginfo-4.1.23-31.1 libsamba-policy-devel-4.1.23-31.1 libsamba-policy0-4.1.23-31.1 libsamba-policy0-debuginfo-4.1.23-31.1 libsamba-util-devel-4.1.23-31.1 libsamba-util0-4.1.23-31.1 libsamba-util0-debuginfo-4.1.23-31.1 libsamdb-devel-4.1.23-31.1 libsamdb0-4.1.23-31.1 libsamdb0-debuginfo-4.1.23-31.1 libsmbclient-devel-4.1.23-31.1 libsmbclient-raw-devel-4.1.23-31.1 libsmbclient-raw0-4.1.23-31.1 libsmbclient-raw0-debuginfo-4.1.23-31.1 libsmbclient0-4.1.23-31.1 libsmbclient0-debuginfo-4.1.23-31.1 libsmbconf-devel-4.1.23-31.1 libsmbconf0-4.1.23-31.1 libsmbconf0-debuginfo-4.1.23-31.1 libsmbldap-devel-4.1.23-31.1 libsmbldap0-4.1.23-31.1 libsmbldap0-debuginfo-4.1.23-31.1 libsmbsharemodes-devel-4.1.23-31.1 libsmbsharemodes0-4.1.23-31.1 libsmbsharemodes0-debuginfo-4.1.23-31.1 libtevent-util-devel-4.1.23-31.1 libtevent-util0-4.1.23-31.1 libtevent-util0-debuginfo-4.1.23-31.1 libwbclient-devel-4.1.23-31.1 libwbclient0-4.1.23-31.1 libwbclient0-debuginfo-4.1.23-31.1 samba-4.1.23-31.1 samba-client-4.1.23-31.1 samba-client-debuginfo-4.1.23-31.1 samba-core-devel-4.1.23-31.1 samba-debuginfo-4.1.23-31.1 samba-debugsource-4.1.23-31.1 samba-libs-4.1.23-31.1 samba-libs-debuginfo-4.1.23-31.1 samba-pidl-4.1.23-31.1 samba-python-4.1.23-31.1 samba-python-debuginfo-4.1.23-31.1 samba-test-4.1.23-31.1 samba-test-debuginfo-4.1.23-31.1 samba-test-devel-4.1.23-31.1 samba-winbind-4.1.23-31.1 samba-winbind-debuginfo-4.1.23-31.1 - openSUSE 13.2 (x86_64): libdcerpc-atsvc0-32bit-4.1.23-31.1 libdcerpc-atsvc0-debuginfo-32bit-4.1.23-31.1 libdcerpc-binding0-32bit-4.1.23-31.1 libdcerpc-binding0-debuginfo-32bit-4.1.23-31.1 libdcerpc-samr0-32bit-4.1.23-31.1 libdcerpc-samr0-debuginfo-32bit-4.1.23-31.1 libdcerpc0-32bit-4.1.23-31.1 libdcerpc0-debuginfo-32bit-4.1.23-31.1 libgensec0-32bit-4.1.23-31.1 libgensec0-debuginfo-32bit-4.1.23-31.1 libndr-krb5pac0-32bit-4.1.23-31.1 libndr-krb5pac0-debuginfo-32bit-4.1.23-31.1 libndr-nbt0-32bit-4.1.23-31.1 libndr-nbt0-debuginfo-32bit-4.1.23-31.1 libndr-standard0-32bit-4.1.23-31.1 libndr-standard0-debuginfo-32bit-4.1.23-31.1 libndr0-32bit-4.1.23-31.1 libndr0-debuginfo-32bit-4.1.23-31.1 libnetapi0-32bit-4.1.23-31.1 libnetapi0-debuginfo-32bit-4.1.23-31.1 libpdb0-32bit-4.1.23-31.1 libpdb0-debuginfo-32bit-4.1.23-31.1 libregistry0-32bit-4.1.23-31.1 libregistry0-debuginfo-32bit-4.1.23-31.1 libsamba-credentials0-32bit-4.1.23-31.1 libsamba-credentials0-debuginfo-32bit-4.1.23-31.1 libsamba-hostconfig0-32bit-4.1.23-31.1 libsamba-hostconfig0-debuginfo-32bit-4.1.23-31.1 libsamba-policy0-32bit-4.1.23-31.1 libsamba-policy0-debuginfo-32bit-4.1.23-31.1 libsamba-util0-32bit-4.1.23-31.1 libsamba-util0-debuginfo-32bit-4.1.23-31.1 libsamdb0-32bit-4.1.23-31.1 libsamdb0-debuginfo-32bit-4.1.23-31.1 libsmbclient-raw0-32bit-4.1.23-31.1 libsmbclient-raw0-debuginfo-32bit-4.1.23-31.1 libsmbclient0-32bit-4.1.23-31.1 libsmbclient0-debuginfo-32bit-4.1.23-31.1 libsmbconf0-32bit-4.1.23-31.1 libsmbconf0-debuginfo-32bit-4.1.23-31.1 libsmbldap0-32bit-4.1.23-31.1 libsmbldap0-debuginfo-32bit-4.1.23-31.1 libtevent-util0-32bit-4.1.23-31.1 libtevent-util0-debuginfo-32bit-4.1.23-31.1 libwbclient0-32bit-4.1.23-31.1 libwbclient0-debuginfo-32bit-4.1.23-31.1 samba-32bit-4.1.23-31.1 samba-client-32bit-4.1.23-31.1 samba-client-debuginfo-32bit-4.1.23-31.1 samba-debuginfo-32bit-4.1.23-31.1 samba-libs-32bit-4.1.23-31.1 samba-libs-debuginfo-32bit-4.1.23-31.1 samba-winbind-32bit-4.1.23-31.1 samba-winbind-debuginfo-32bit-4.1.23-31.1 - openSUSE 13.2 (noarch): samba-doc-4.1.23-31.1


References

https://www.suse.com/security/cve/CVE-2015-7560.html https://www.suse.com/security/cve/CVE-2016-0771.html https://bugzilla.suse.com/953382 https://bugzilla.suse.com/953972 https://bugzilla.suse.com/968222 https://bugzilla.suse.com/968223


Severity
Announcement ID: openSUSE-SU-2016:0813-1
Rating: important
Affected Products: openSUSE 13.2

Related News