Synopsis: Moderate: samba security, bug fix, and enhancement update
Advisory ID:       SLSA-2019:2099-1
Issue Date:        2019-08-06
CVE Numbers:       CVE-2019-3880
--

The following packages have been upgraded to a later upstream version:
samba (4.9.1).

Security Fix(es):

* samba: save registry file outside share as unprivileged user
(CVE-2019-3880)
--

SL7
  x86_64
    samba-winbind-modules-4.9.1-6.el7.x86_64.rpm
    samba-client-libs-4.9.1-6.el7.x86_64.rpm
    samba-client-libs-4.9.1-6.el7.i686.rpm
    samba-python-4.9.1-6.el7.i686.rpm
    libsmbclient-4.9.1-6.el7.x86_64.rpm
    libwbclient-4.9.1-6.el7.x86_64.rpm
    samba-winbind-modules-4.9.1-6.el7.i686.rpm
    samba-common-4.9.1-6.el7.noarch.rpm
    samba-libs-4.9.1-6.el7.i686.rpm
    samba-winbind-4.9.1-6.el7.x86_64.rpm
    samba-winbind-clients-4.9.1-6.el7.x86_64.rpm
    samba-client-4.9.1-6.el7.x86_64.rpm
    samba-common-tools-4.9.1-6.el7.x86_64.rpm
    samba-libs-4.9.1-6.el7.x86_64.rpm
    libwbclient-4.9.1-6.el7.i686.rpm
    samba-4.9.1-6.el7.x86_64.rpm
    samba-common-libs-4.9.1-6.el7.x86_64.rpm
    samba-krb5-printing-4.9.1-6.el7.x86_64.rpm
    samba-python-4.9.1-6.el7.x86_64.rpm
    libsmbclient-4.9.1-6.el7.i686.rpm
    libwbclient-devel-4.9.1-6.el7.x86_64.rpm
    samba-dc-4.9.1-6.el7.x86_64.rpm
    samba-test-libs-4.9.1-6.el7.i686.rpm
    samba-pidl-4.9.1-6.el7.noarch.rpm
    samba-test-libs-4.9.1-6.el7.x86_64.rpm
    libwbclient-devel-4.9.1-6.el7.i686.rpm
    samba-devel-4.9.1-6.el7.i686.rpm
    samba-dc-libs-4.9.1-6.el7.x86_64.rpm
    libsmbclient-devel-4.9.1-6.el7.i686.rpm
    samba-test-4.9.1-6.el7.x86_64.rpm
    samba-python-test-4.9.1-6.el7.x86_64.rpm
    samba-vfs-glusterfs-4.9.1-6.el7.x86_64.rpm
    samba-winbind-krb5-locator-4.9.1-6.el7.x86_64.rpm
    libsmbclient-devel-4.9.1-6.el7.x86_64.rpm
    samba-devel-4.9.1-6.el7.x86_64.rpm
    samba-debuginfo-4.9.1-6.el7.i686.rpm
    samba-debuginfo-4.9.1-6.el7.x86_64.rpm
  noarch
    samba-common-4.9.1-6.el7.noarch.rpm
    samba-pidl-4.9.1-6.el7.noarch.rpm

- Scientific Linux Development Team

SciLinux: SLSA-2019-2099-1 Moderate: samba on SL7.x x86_64

samba: save registry file outside share as unprivileged user (CVE-2019-3880) SL7 x86_64 samba-winbind-modules-4.9.1-6.el7.x86_64.rpm samba-client-libs-4.9.1-6.el7.x86_64.rpm samba-...

Summary

Moderate: samba security, bug fix, and enhancement update



Security Fixes

* samba: save registry file outside share as unprivileged user (CVE-2019-3880)
SL7 x86_64 samba-winbind-modules-4.9.1-6.el7.x86_64.rpm samba-client-libs-4.9.1-6.el7.x86_64.rpm samba-client-libs-4.9.1-6.el7.i686.rpm samba-python-4.9.1-6.el7.i686.rpm libsmbclient-4.9.1-6.el7.x86_64.rpm libwbclient-4.9.1-6.el7.x86_64.rpm samba-winbind-modules-4.9.1-6.el7.i686.rpm samba-common-4.9.1-6.el7.noarch.rpm samba-libs-4.9.1-6.el7.i686.rpm samba-winbind-4.9.1-6.el7.x86_64.rpm samba-winbind-clients-4.9.1-6.el7.x86_64.rpm samba-client-4.9.1-6.el7.x86_64.rpm samba-common-tools-4.9.1-6.el7.x86_64.rpm samba-libs-4.9.1-6.el7.x86_64.rpm libwbclient-4.9.1-6.el7.i686.rpm samba-4.9.1-6.el7.x86_64.rpm samba-common-libs-4.9.1-6.el7.x86_64.rpm samba-krb5-printing-4.9.1-6.el7.x86_64.rpm samba-python-4.9.1-6.el7.x86_64.rpm libsmbclient-4.9.1-6.el7.i686.rpm libwbclient-devel-4.9.1-6.el7.x86_64.rpm samba-dc-4.9.1-6.el7.x86_64.rpm samba-test-libs-4.9.1-6.el7.i686.rpm samba-pidl-4.9.1-6.el7.noarch.rpm samba-test-libs-4.9.1-6.el7.x86_64.rpm libwbclient-devel-4.9.1-6.el7.i686.rpm samba-devel-4.9.1-6.el7.i686.rpm samba-dc-libs-4.9.1-6.el7.x86_64.rpm libsmbclient-devel-4.9.1-6.el7.i686.rpm samba-test-4.9.1-6.el7.x86_64.rpm samba-python-test-4.9.1-6.el7.x86_64.rpm samba-vfs-glusterfs-4.9.1-6.el7.x86_64.rpm samba-winbind-krb5-locator-4.9.1-6.el7.x86_64.rpm libsmbclient-devel-4.9.1-6.el7.x86_64.rpm samba-devel-4.9.1-6.el7.x86_64.rpm samba-debuginfo-4.9.1-6.el7.i686.rpm samba-debuginfo-4.9.1-6.el7.x86_64.rpm noarch samba-common-4.9.1-6.el7.noarch.rpm samba-pidl-4.9.1-6.el7.noarch.rpm
- Scientific Linux Development Team

Severity
Advisory ID: SLSA-2019:2099-1
Issued Date: : 2019-08-06
CVE Numbers: CVE-2019-3880
The following packages have been upgraded to a later upstream version:

Related News