Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

RHEL 9 RHSA-2023:4325 Moderate Samba SMB Fix for Security Issues

red hat
Calendar Grey July 31, 2023
Dist Redhat Esm H88
Canonical issues Ubuntu security patch for 22.04 focusing on important vulnerabilities along with performance tweaks. Explore the implications further.
An update for samba is now available for Red Hat Enterprise Linux 9

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

After installing this update, the smb service will be restarted automatically.

Summary

Samba is an open-source implementation of the Server Message Block (SMB) protocol and the related Common Internet File System (CIFS) protocol, which allow PC-compatible machines to share files, printers, and various information.
Security Fix(es):
* samba: SMB2 packet signing is not enforced when "server signing = required" is set (CVE-2023-3347)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Bug Fix(es):
* The trust relationship between this workstation and the primary domain failed (BZ#2223600)

References

https://access.redhat.com/security/cve/CVE-2023-3347 https://access.redhat.com/security/updates/classification#moderate

Package List

Red Hat Enterprise Linux AppStream (v. 9):
aarch64: ctdb-debuginfo-4.17.5-103.el9_2.aarch64.rpm libnetapi-debuginfo-4.17.5-103.el9_2.aarch64.rpm libsmbclient-debuginfo-4.17.5-103.el9_2.aarch64.rpm libwbclient-debuginfo-4.17.5-103.el9_2.aarch64.rpm python3-samba-dc-debuginfo-4.17.5-103.el9_2.aarch64.rpm python3-samba-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-client-4.17.5-103.el9_2.aarch64.rpm samba-client-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-client-libs-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-common-libs-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-common-tools-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-dc-libs-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-dcerpc-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-debugsource-4.17.5-103.el9_2.aarch64.rpm samba-krb5-printing-4.17.5-103.el9_2.aarch64.rpm samba-krb5-printing-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-ldb-ldap-modules-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-libs-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-test-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-test-libs-debuginfo-4.17.5-103.el9_2.aarch64.rpm samba-vfs-iouring-4.17.5-103.el9_2.aarch64.rpm samba-vfs-iouring-debuginfo-4.17.5-103.el9_2.aarch64.rpm

Read the Full Advisory


Advisory ID: RHSA-2023:4325-01
Product: Red Hat Enterprise Linux
Issue date: 2023-07-31

Topic

An update for samba is now available for Red Hat Enterprise Linux 9.Red Hat Product Security has rated this update as having a security impactof Moderate. A Common Vulnerability Scoring System (CVSS) base score, whichgives a detailed severity rating, is available for each vulnerability fromthe CVE link(s) in the References section.

Relevant Releases Architectures

Red Hat Enterprise Linux AppStream (v. 9) - aarch64, ppc64le, s390x, x86_64

Red Hat Enterprise Linux BaseOS (v. 9) - aarch64, noarch, ppc64le, s390x, x86_64

Red Hat Enterprise Linux CRB (v. 9) - aarch64, noarch, ppc64le, s390x, x86_64

Red Hat Enterprise Linux ResilientStorage (v. 9) - ppc64le, s390x, x86_64

Bugs Fixed

2222792 - CVE-2023-3347 samba: SMB2 packet signing is not enforced when "server signing = required" is set

2223600 - The trust relationship between this workstation and the primary domain failed [rhel-9.2.0.z]

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here