Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 542
Alerts This Week
Warning Icon 1 542

Stay Secure with the Latest Linux Advisories

Filter%20icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -4 articles for you...
217

Oracle Linux 9 ELSA-2023-6744 Moderate: Samba Security Update

The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network: . Oracle Linux Security Advisory ELSA-2023-6744 https://linux.oracle.com/errata/ELSA-2023-6744.html The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable LinuxNetwork: x86_64: libnetapi-4.18.6-101.el9_3.i686.rpm libnetapi-4.18.6-101.el9_3.x86_64.rpm libsmbclient-4.18.6-101.el9_3.i686.rpm libsmbclient-4.18.6-101.el9_3.x86_64.rpm libwbclient-4.18.6-101.el9_3.i686.rpm libwbclient-4.18.6-101.el9_3.x86_64.rpm python3-samba-4.18.6-101.el9_3.i686.rpm python3-samba-4.18.6-101.el9_3.x86_64.rpm python3-samba-dc-4.18.6-101.el9_3.x86_64.rpm samba-4.18.6-101.el9_3.x86_64.rpm samba-client-4.18.6-101.el9_3.x86_64.rpm samba-client-libs-4.18.6-101.el9_3.i686.rpm samba-client-libs-4.18.6-101.el9_3.x86_64.rpm samba-common-4.18.6-101.el9_3.noarch.rpm samba-common-libs-4.18.6-101.el9_3.i686.rpm samba-common-libs-4.18.6-101.el9_3.x86_64.rpm samba-common-tools-4.18.6-101.el9_3.x86_64.rpm samba-dc-libs-4.18.6-101.el9_3.i686.rpm samba-dc-libs-4.18.6-101.el9_3.x86_64.rpm samba-dcerpc-4.18.6-101.el9_3.x86_64.rpm samba-krb5-printing-4.18.6-101.el9_3.x86_64.rpm samba-ldb-ldap-modules-4.18.6-101.el9_3.x86_64.rpm samba-libs-4.18.6-101.el9_3.i686.rpm samba-libs-4.18.6-101.el9_3.x86_64.rpm samba-tools-4.18.6-101.el9_3.x86_64.rpm samba-usershares-4.18.6-101.el9_3.x86_64.rpm samba-vfs-iouring-4.18.6-101.el9_3.x86_64.rpm samba-winbind-4.18.6-101.el9_3.x86_64.rpm samba-winbind-clients-4.18.6-101.el9_3.x86_64.rpm samba-winbind-krb5-locator-4.18.6-101.el9_3.x86_64.rpm samba-winbind-modules-4.18.6-101.el9_3.i686.rpm samba-winbind-modules-4.18.6-101.el9_3.x86_64.rpm samba-winexe-4.18.6-101.el9_3.x86_64.rpm libnetapi-devel-4.18.6-101.el9_3.i686.rpm libnetapi-devel-4.18.6-101.el9_3.x86_64.rpm libsmbclient-devel-4.18.6-101.el9_3.i686.rpm libsmbclient-devel-4.18.6-101.el9_3.x86_64.rpm libwbclient-devel-4.18.6-101.el9_3.i686.rpm libwbclient-devel-4.18.6-101.el9_3.x86_64.rpm python3-samba-devel-4.18.6-101.el9_3.i686.rpm python3-samba-devel-4.18.6-101.el9_3.x86_64.rpm python3-samba-test-4.18.6-101.el9_3.x86_64.rpm samba-devel-4.18.6-101.el9_3.i686.rpm samba-devel-4.18.6-101.el9_3.x86_64.rpm samba-pidl-4.18.6-101.el9_3.noarch.rpm samba-test-4.18.6-101.el9_3.x86_64.rpm samba-test-libs-4.18.6-101.el9_3.x86_64.rpm aarch64: libnetapi-4.18.6-101.el9_3.aarch64.rpm libsmbclient-4.18.6-101.el9_3.aarch64.rpm libwbclient-4.18.6-101.el9_3.aarch64.rpm python3-samba-4.18.6-101.el9_3.aarch64.rpm python3-samba-dc-4.18.6-101.el9_3.aarch64.rpm samba-4.18.6-101.el9_3.aarch64.rpm samba-client-4.18.6-101.el9_3.aarch64.rpm samba-client-libs-4.18.6-101.el9_3.aarch64.rpm samba-common-4.18.6-101.el9_3.noarch.rpm samba-common-libs-4.18.6-101.el9_3.aarch64.rpm samba-common-tools-4.18.6-101.el9_3.aarch64.rpm samba-dc-libs-4.18.6-101.el9_3.aarch64.rpm samba-dcerpc-4.18.6-101.el9_3.aarch64.rpm samba-krb5-printing-4.18.6-101.el9_3.aarch64.rpm samba-ldb-ldap-modules-4.18.6-101.el9_3.aarch64.rpm samba-libs-4.18.6-101.el9_3.aarch64.rpm samba-tools-4.18.6-101.el9_3.aarch64.rpm samba-usershares-4.18.6-101.el9_3.aarch64.rpm samba-vfs-iouring-4.18.6-101.el9_3.aarch64.rpm samba-winbind-4.18.6-101.el9_3.aarch64.rpm samba-winbind-clients-4.18.6-101.el9_3.aarch64.rpm samba-winbind-krb5-locator-4.18.6-101.el9_3.aarch64.rpm samba-winbind-modules-4.18.6-101.el9_3.aarch64.rpm libnetapi-devel-4.18.6-101.el9_3.aarch64.rpm libsmbclient-devel-4.18.6-101.el9_3.aarch64.rpm libwbclient-devel-4.18.6-101.el9_3.aarch64.rpm python3-samba-devel-4.18.6-101.el9_3.aarch64.rpm python3-samba-test-4.18.6-101.el9_3.aarch64.rpm samba-devel-4.18.6-101.el9_3.aarch64.rpm samba-pidl-4.18.6-101.el9_3.noarch.rpm samba-test-4.18.6-101.el9_3.aarch64.rpm samba-test-libs-4.18.6-101.el9_3.aarch64.rpm SRPMS: https://oss.oracle.com:443/ol9/SRPMS-updates//samba-4.18.6-101.el9_3.src.rpm Related CVEs: CVE-2023-3961 CVE-2023-4091 CVE-2023-42669 Description of changes: [4.18.6-101] - resolves: RHEL-11937 Fix CVE-2023-3961 - smbd must check the pipename - resolves: RHEL-11937 Fix CVE-2023-4091 - SMB clients can truncate files - resolves: RHEL-11937 Fix CVE-2023-42669 - Remove rpcecho server _______________________________________________ El-errata mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. https://oss.oracle.com/mailman/listinfo/el-errata . Keep informed about Oracle Linux Security AdvisoryELSA-2023-6755 related to Nginx patches that resolve numerous vulnerabilities.. Oracle Linux Samba Update, Samba Security Patch, Samba Fixes. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Nov 17, 2023 Important Oracle
100

SUSE 15-SP4: Important Samba Fixes in SUSE-SU-2022:2659-1 Release

An update that solves 5 vulnerabilities and has 6 fixes is now available. . SUSE Security Update: Security update for ldb, samba ______________________________________________________________________________ Announcement ID: SUSE-SU-2022:2659-1 Rating: important References: #1196224 #1198255 #1199247 #1199734 #1200556 #1200964 #1201490 #1201492 #1201493 #1201495 #1201496 Cross-References: CVE-2022-2031 CVE-2022-32742 CVE-2022-32744 CVE-2022-32745 CVE-2022-32746 CVSS scores: CVE-2022-32744 (SUSE): 8.8 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVE-2022-32745 (SUSE): 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:L CVE-2022-32746 (SUSE): 5.4 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L Affected Products: SUSE Linux Enterprise Desktop 15-SP4 SUSE Linux Enterprise High Availability 15-SP4 SUSE Linux Enterprise High Performance Computing 15-SP4 SUSE Linux Enterprise Module for Basesystem 15-SP4 SUSE Linux Enterprise Server 15-SP4 SUSE Linux Enterprise Server for SAP Applications 15-SP4 SUSE Manager Proxy 4.3 SUSE Manager Retail Branch Server 4.3 SUSE Manager Server 4.3 openSUSE Leap 15.4 ______________________________________________________________________________ An update that solves 5 vulnerabilities and has 6 fixes is now available. Description: This update for ldb, samba fixes the following issues: - CVE-2022-32746: Fixed a use-after-free occurring in database audit logging (bsc#1201490). - CVE-2022-32745: Fixed a remote server crash with an LDAP add or modify request (bsc#1201492). - CVE-2022-2031: Fixed AD restrictions bypass associated with changing passwords (bsc#1201495). - CVE-2022-32742: Fixed a memory leak inSMB1 (bsc#1201496). - CVE-2022-32744: Fixed an arbitrary password change request for any AD user (bsc#1201493). The following non-security bug were fixed: ldb was updated to version 2.4.3: + Fix build problems, waf produces incorrect names for python extensions; (bso#15071); samba was updated to 4.15.8: * Use pathref fd instead of io fd in vfs_default_durable_cookie; (bso#15042); * Setting fruit:resource = stream in vfs_fruit causes a panic; (bso#15099); * Add support for bind 9.18; (bso#14986); * logging dsdb audit to specific files does not work; (bso#15076); * vfs_gpfs with vfs_shadowcopy2 fail to restore file if original file had been deleted; (bso#15069); * netgroups support removed; (bso#15087); (bsc#1199247); * net ads info shows LDAP Server: 0.0.0.0 depending on contacted server; (bso#14674); (bsc#1199734); * waf produces incorrect names for python extensions with Python 3.11; (bso#15071); * smbclient commands del & deltree fail with NT_STATUS_OBJECT_PATH_NOT_FOUND with DFS; (bso#15100); (bsc#1200556); * vfs_gpfs recalls=no option prevents listing files; (bso#15055); * waf produces incorrect names for python extensions with Python 3.11; (bso#15071); * Compile error in source3/utils/regedit_hexedit.c; (bso#15091); * ldconfig: /lib64/libsmbconf.so.0 is not a symbolic link; (bso#15108); * smbd doesn't handle UPNs for looking up names; (bso#15054); * Out-by-4 error in smbd read reply max_send clamp; (bso#14443); - Move pdb backends from package samba-libs to package samba-client-libs and remove samba-libs requirement from samba-winbind; (bsc#1200964); (bsc#1198255); - Use the canonical realm name to refresh the Kerberos tickets; (bsc#1196224); (bso#14979); - Fix smbclient commands del & deltree failing with NT_STATUS_OBJECT_PATH_NOT_FOUND with DFS; (bso#15100); (bsc#1200556). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installationmethods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Leap 15.4: zypper in -t patch openSUSE-SLE-15.4-2022-2659=1 - SUSE Linux Enterprise Module for Basesystem 15-SP4: zypper in -t patch SUSE-SLE-Module-Basesystem-15-SP4-2022-2659=1 - SUSE Linux Enterprise High Availability 15-SP4: zypper in -t patch SUSE-SLE-Product-HA-15-SP4-2022-2659=1 Package List: - openSUSE Leap 15.4 (aarch64 ppc64le s390x x86_64): ctdb-4.15.8+git.500.d5910280cc7-150400.3.11.1 ctdb-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 ctdb-pcp-pmda-4.15.8+git.500.d5910280cc7-150400.3.11.1 ctdb-pcp-pmda-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 ldb-debugsource-2.4.3-150400.4.8.1 ldb-tools-2.4.3-150400.4.8.1 ldb-tools-debuginfo-2.4.3-150400.4.8.1 libldb-devel-2.4.3-150400.4.8.1 libldb2-2.4.3-150400.4.8.1 libldb2-debuginfo-2.4.3-150400.4.8.1 libsamba-policy-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy-python3-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy0-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy0-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 python3-ldb-2.4.3-150400.4.8.1 python3-ldb-debuginfo-2.4.3-150400.4.8.1 python3-ldb-devel-2.4.3-150400.4.8.1 samba-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debugsource-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-dsdb-modules-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-dsdb-modules-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-gpupdate-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ldb-ldap-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ldb-ldap-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-test-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-test-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-tool-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - openSUSE Leap 15.4 (aarch64 x86_64): samba-ceph-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ceph-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - openSUSE Leap 15.4 (noarch): samba-doc-4.15.8+git.500.d5910280cc7-150400.3.11.1 - openSUSE Leap 15.4 (x86_64): libldb2-32bit-2.4.3-150400.4.8.1 libldb2-32bit-debuginfo-2.4.3-150400.4.8.1 libsamba-policy0-python3-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy0-python3-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 python3-ldb-32bit-2.4.3-150400.4.8.1 python3-ldb-32bit-debuginfo-2.4.3-150400.4.8.1 samba-ad-dc-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-devel-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 ppc64le s390x x86_64): ldb-debugsource-2.4.3-150400.4.8.1 ldb-tools-2.4.3-150400.4.8.1 ldb-tools-debuginfo-2.4.3-150400.4.8.1 libldb-devel-2.4.3-150400.4.8.1 libldb2-2.4.3-150400.4.8.1 libldb2-debuginfo-2.4.3-150400.4.8.1 libsamba-policy-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy-python3-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy0-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 libsamba-policy0-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 python3-ldb-2.4.3-150400.4.8.1 python3-ldb-debuginfo-2.4.3-150400.4.8.1 python3-ldb-devel-2.4.3-150400.4.8.1 samba-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ad-dc-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debugsource-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-devel-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-dsdb-modules-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-dsdb-modules-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-gpupdate-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ldb-ldap-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ldb-ldap-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-python3-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-python3-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-winbind-libs-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (aarch64 x86_64): samba-ceph-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-ceph-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - SUSE Linux Enterprise Module for Basesystem 15-SP4 (x86_64): libldb2-32bit-2.4.3-150400.4.8.1 libldb2-32bit-debuginfo-2.4.3-150400.4.8.1 samba-client-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-client-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-32bit-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-libs-32bit-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 - SUSE Linux Enterprise High Availability 15-SP4 (aarch64ppc64le s390x x86_64): ctdb-4.15.8+git.500.d5910280cc7-150400.3.11.1 ctdb-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debuginfo-4.15.8+git.500.d5910280cc7-150400.3.11.1 samba-debugsource-4.15.8+git.500.d5910280cc7-150400.3.11.1 References: https://www.suse.com/security/cve/CVE-2022-2031.html https://www.suse.com/security/cve/CVE-2022-32742.html https://www.suse.com/security/cve/CVE-2022-32744.html https://www.suse.com/security/cve/CVE-2022-32745.html https://www.suse.com/security/cve/CVE-2022-32746.html https://bugzilla.suse.com/1196224 https://bugzilla.suse.com/1198255 https://bugzilla.suse.com/1199247 https://bugzilla.suse.com/1199734 https://bugzilla.suse.com/1200556 https://bugzilla.suse.com/1200964 https://bugzilla.suse.com/1201490 https://bugzilla.suse.com/1201492 https://bugzilla.suse.com/1201493 https://bugzilla.suse.com/1201495 https://bugzilla.suse.com/1201496 . A recent patch addressed 5 vulnerabilities in ldb and samba, enhancing security measures for SUSE platforms. Implement the provided updates promptly.. SUSE Update, Samba Security Fixes, Ldb Security Advisory. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Aug 03, 2022 Important SuSE
100

SUSE: 2020:1234-1 Critical: Kernel Live Update for SLE 15 SP3

An update that solves three vulnerabilities and has one errata is now available. . SUSE Security Update: Security update for the Linux Kernel (Live Patch 30 for SLE 12 SP2) ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:3261-1 Rating: important References: #1153108 #1156321 #1156331 #1157770 Cross-References: CVE-2018-20856 CVE-2019-10220 CVE-2019-13272 Affected Products: SUSE Linux Enterprise Server for SAP 12-SP2 SUSE Linux Enterprise Server 12-SP2-LTSS ______________________________________________________________________________ An update that solves three vulnerabilities and has one errata is now available. Description: This update for the Linux Kernel 4.4.121-92_114 fixes several issues. The following security issues were fixed: - CVE-2018-20856: Fixed a use-after-free in __blk_drain_queue() due to an improper error handling (bsc#1156331). - CVE-2019-13272: Fixed a privilege escalation from user to root due to improper handling of credentials by leveraging certain scenarios with a parent-child process relationship (bsc#1156321). - CVE-2019-10220: Fixed an issue where samba servers could inject relative paths in directory entry lists (bsc#1153108). The following bugs were fixed: - Fixed boot up hang revealed by int3 self test (bsc#1157770). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server for SAP 12-SP2: zypper in -t patch SUSE-SLE-SAP-12-SP2-2019-3261=1 SUSE-SLE-SAP-12-SP2-2019-3262=1 - SUSE Linux Enterprise Server 12-SP2-LTSS: zypper in -t patch SUSE-SLE-SERVER-12-SP2-2019-3261=1 SUSE-SLE-SERVER-12-SP2-2019-3262=1 Package List: - SUSE Linux Enterprise Server for SAP12-SP2 (ppc64le x86_64): kgraft-patch-4_4_121-92_114-default-6-2.1 kgraft-patch-4_4_121-92_117-default-5-2.1 - SUSE Linux Enterprise Server 12-SP2-LTSS (ppc64le x86_64): kgraft-patch-4_4_121-92_114-default-6-2.1 kgraft-patch-4_4_121-92_117-default-5-2.1 References: https://www.suse.com/security/cve/CVE-2018-20856.html https://www.suse.com/security/cve/CVE-2019-10220.html https://www.suse.com/security/cve/CVE-2019-13272.html https://bugzilla.suse.com/1153108 https://bugzilla.suse.com/1156321 https://bugzilla.suse.com/1156331 https://bugzilla.suse.com/1157770 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . Mitigating essential vulnerabilities in the Linux kernel using a SUSE update to bolster system safety and reliability.. SUSE Linux Server, Kernel Update, Privilege Escalation Fix. . Severity: Critical. LinuxSecurity.com Team

Calendar%202 Dec 11, 2019 Critical SuSE
100

SUSE: 2019:3255-1 Important: Samba Path Injection Fix for SLE 12 SP4

An update that solves one vulnerability and has one errata is now available. . SUSE Security Update: Security update for the Linux Kernel (Live Patch 8 for SLE 12 SP4) ______________________________________________________________________________ Announcement ID: SUSE-SU-2019:3255-1 Rating: important References: #1153108 #1157770 Cross-References: CVE-2019-10220 Affected Products: SUSE Linux Enterprise Live Patching 12-SP4 ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for the Linux Kernel 4.12.14-95_32 fixes several issues. The following security issue was fixed: - CVE-2019-10220: Fixed an issue where samba servers could inject relative paths in directory entry lists (bsc#1153108). The following bugs were fixed: - Fixed boot up hang revealed by int3 self test (bsc#1157770). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Live Patching 12-SP4: zypper in -t patch SUSE-SLE-Live-Patching-12-SP4-2019-3255=1 Package List: - SUSE Linux Enterprise Live Patching 12-SP4 (ppc64le x86_64): kgraft-patch-4_12_14-95_32-default-3-2.1 References: https://www.suse.com/security/cve/CVE-2019-10220.html https://bugzilla.suse.com/1153108 https://bugzilla.suse.com/1157770 _______________________________________________ sle-security-updates mailing list This email address is being protected from spambots. You need JavaScript enabled to view it. http://lists.suse.com/mailman/listinfo/sle-security-updates . SUSE Security Patch resolves a critical kernel vulnerability in Live Patch 8 for SLE 12 SP4, improving overall system protection.. SUSE Linux, Kernel Update, Security Patch, Live Patching. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Dec 11, 2019 Important SuSE
100

SUSE Linux Enterprise 12: 2015:0353-1 Important Samba Security Threat

An update that solves one vulnerability and has 7 fixes is An update that solves one vulnerability and has 7 fixes is An update that solves one vulnerability and has 7 fixes is now available. now available.. SUSE Security Update: Security update for samba ______________________________________________________________________________ Announcement ID: SUSE-SU-2015:0353-1 Rating: important References: #872912 #873922 #876312 #889175 #898031 #908627 #913238 #917376 Cross-References: CVE-2015-0240 Affected Products: SUSE Linux Enterprise Software Development Kit 12 SUSE Linux Enterprise Server 12 SUSE Linux Enterprise Desktop 12 ______________________________________________________________________________ An update that solves one vulnerability and has 7 fixes is now available. Description: samba was updated to fix one security issue. This security issue was fixed: - CVE-2015-0240: Don't call talloc_free on an uninitialized pointer (bnc#917376). These non-security issues were fixed: - Fix vfs_snapper DBus string handling (bso#11055, bnc#913238). - Fix libsmbclient DFS referral handling. + Reuse connections derived from DFS referrals (bso#10123). + Set domain/workgroup based on authentication callback value (bso#11059). - pam_winbind: Fix warn_pwd_expire implementation (bso#9056). - nsswitch: Fix soname of linux nss_*.so.2 modules (bso#9299). - Fix profiles tool (bso#9629). - s3-lib: Do not require a password with --use-ccache (bso#10279). - s4:dsdb/rootdse: Expand extended dn values with the AS_SYSTEM control (bso#10949). - s4-rpc: dnsserver: Fix enumeration of IPv4 and IPv6 addresses (bso#10952). - s3:smb2_server: Allow reauthentication without signing (bso#10958). - s3-smbclient: Return success if we listed the shares (bso#10960). - s3-smbstatus: Fix exit code of profile output (bso#10961). - libcli: SMB2: PureSMB2-only negprot fix to make us behave as a Windows client does (bso#10966). - s3: smbd/modules: Fix *allocate* calls to follow POSIX error return convention (bso#10982). - Fix 'domain join' by adding 'drsuapi.DsBindInfoFallBack' attribute 'supported_extensions' (bso#11006). - idl:drsuapi: Manage all possible lengths of drsuapi_DsBindInfo (bso#11006). - winbind: Retry LogonControl RPC in ping-dc after session expiration (bso#11034). - yast2-samba-client should be able to specify osName and osVer on AD domain join (bnc#873922). - Lookup FSRVP share snums at runtime rather than storing them persistently (bnc#908627). - Specify soft dependency for network-online.target in Winbind systemd service file (bnc#889175). - Fix spoolss error response marshalling; (bso#10984). - pidl/wscript: Remove --with-perl-* options; revert buildtools/wafadmin/ Tools/perl.py back to upstream state (bso#10472). - s4-dns: Add support for BIND 9.10 (bso#10620). - nmbd fails to accept "--piddir" option; (bso#10711). - S3: source3/smbd/process.c::srv_send_smb() returns true on the error path (bso#10880). - vfs_glusterfs: Remove "integer fd" code and store the glfs pointers (bso#10889). - s3-nmbd: Fix netbios name truncation (bso#10896). - spoolss: Fix handling of bad EnumJobs levels (bso#10898). - spoolss: Fix jobid in level 3 EnumJobs response; (bso#10905). - s3: nmbd: Ensure NetBIOS names are only 15 characters stored; (bso#10920). - s3:smbd: Fix file corruption using "write cache size != 0"; (bso#10921). - pdb_tdb: Fix a TALLOC/SAFE_FREE mixup; (bso#10932). - s3-keytab: Fix keytab array NULL termination; (bso#10933). - Cleanup add_string_to_array and usage; (bso#10942). - Remove and cleanup shares and registry state associated with externally deleted snaphots exposed as shadow copies; (bnc#876312). - Use the upstream tar ball, as signature verification is now able to handle compressed archives. -Fix leak when closing file descriptor returned from dirfd; (bso#10918). - Fix spoolss EnumJobs and GetJob responses; (bso#10905); (bnc#898031). + Fix handling of bad EnumJobs levels; (bso#10898). - Remove dependency on gpg-offline as signature checking is implemented in the source validator. - s3-libnet: Add libnet_join_get_machine_spns(); (bso#9984). - s3-libnet: Make sure we do not overwrite precreated SPNs; (bso#9984). - s3-libads: Add all machine account principals to the keytab; (bso#9985). - s3: winbindd: Old NT Domain code sets struct winbind_domain-> alt_name to be NULL. Ensure this is safe with modern AD-DCs; (bso#10717). - Fix unstrcpy; (bso#10735). - pthreadpool: Slightly serialize jobs; (bso#10779). - s3: smbd: streams - Ensure share mode validation ignores internal opens (op_mid == 0); (bso#10797). - s3: smbd:open_file: Open logic fix; Use a more natural check; (bso#10809). - vfs_media_harmony: Fix a crash bug; (bso#10813). - docs: Mention incompatibility between kernel oplocks and streams_xattr; (bso#10814). - nmbd: Send waiting status to systemd; (bso#10816). - libcli: Fix a segfault calling smbXcli_req_set_pending() on NULL; (bso#10817). - nsswitch: Skip groups we were not able to map; (bso#10824). - s3-winbindd: Use correct realm for trusted domains in idmap child; (bso#10826). - s3: nmbd: Ensure the main nmbd process doesn't create zombies; (bso#10830). - s3: lib: Signal handling - ensure smbrun and change password code save and restore existing SIGCHLD handlers; (bso#10831). - idmap_rfc2307: Fix a crash after connection problem to DC; (bso#10837). - s3-winbindd: Do not use domain SID from LookupSids for Sids2UnixIDs call; (bso#10838). - s3: smb2cli: Query info return length check was reversed; (bso#10848). - registry: Don't leave dangling transactions; (bso#10860). - Prune idle or hung connections older than "winbind request timeout"; (bso#3204);(bnc#872912). Patch Instructions: To install this SUSE Security Update use YaST online_update. Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Software Development Kit 12: zypper in -t patch SUSE-SLE-SDK-12-2015-91=1 - SUSE Linux Enterprise Server 12: zypper in -t patch SUSE-SLE-SERVER-12-2015-91=1 - SUSE Linux Enterprise Desktop 12: zypper in -t patch SUSE-SLE-DESKTOP-12-2015-91=1 To bring your system up-to-date, use "zypper patch". Package List: - SUSE Linux Enterprise Software Development Kit 12 (ppc64le s390x x86_64): libdcerpc-atsvc-devel-4.1.12-16.1 libdcerpc-atsvc0-4.1.12-16.1 libdcerpc-atsvc0-debuginfo-4.1.12-16.1 libdcerpc-devel-4.1.12-16.1 libdcerpc-samr-devel-4.1.12-16.1 libdcerpc-samr0-4.1.12-16.1 libdcerpc-samr0-debuginfo-4.1.12-16.1 libgensec-devel-4.1.12-16.1 libndr-devel-4.1.12-16.1 libndr-krb5pac-devel-4.1.12-16.1 libndr-nbt-devel-4.1.12-16.1 libndr-standard-devel-4.1.12-16.1 libnetapi-devel-4.1.12-16.1 libpdb-devel-4.1.12-16.1 libregistry-devel-4.1.12-16.1 libsamba-credentials-devel-4.1.12-16.1 libsamba-hostconfig-devel-4.1.12-16.1 libsamba-policy-devel-4.1.12-16.1 libsamba-policy0-4.1.12-16.1 libsamba-policy0-debuginfo-4.1.12-16.1 libsamba-util-devel-4.1.12-16.1 libsamdb-devel-4.1.12-16.1 libsmbclient-devel-4.1.12-16.1 libsmbclient-raw-devel-4.1.12-16.1 libsmbconf-devel-4.1.12-16.1 libsmbldap-devel-4.1.12-16.1 libsmbsharemodes-devel-4.1.12-16.1 libsmbsharemodes0-4.1.12-16.1 libsmbsharemodes0-debuginfo-4.1.12-16.1 libtevent-util-devel-4.1.12-16.1 libwbclient-devel-4.1.12-16.1 samba-core-devel-4.1.12-16.1 samba-debuginfo-4.1.12-16.1 samba-debugsource-4.1.12-16.1 samba-test-devel-4.1.12-16.1 - SUSE Linux Enterprise Server 12 (ppc64le s390x x86_64): libdcerpc-binding0-4.1.12-16.1 libdcerpc-binding0-debuginfo-4.1.12-16.1 libdcerpc0-4.1.12-16.1 libdcerpc0-debuginfo-4.1.12-16.1 libgensec0-4.1.12-16.1 libgensec0-debuginfo-4.1.12-16.1 libndr-krb5pac0-4.1.12-16.1 libndr-krb5pac0-debuginfo-4.1.12-16.1 libndr-nbt0-4.1.12-16.1 libndr-nbt0-debuginfo-4.1.12-16.1 libndr-standard0-4.1.12-16.1 libndr-standard0-debuginfo-4.1.12-16.1 libndr0-4.1.12-16.1 libndr0-debuginfo-4.1.12-16.1 libnetapi0-4.1.12-16.1 libnetapi0-debuginfo-4.1.12-16.1 libpdb0-4.1.12-16.1 libpdb0-debuginfo-4.1.12-16.1 libregistry0-4.1.12-16.1 libregistry0-debuginfo-4.1.12-16.1 libsamba-credentials0-4.1.12-16.1 libsamba-credentials0-debuginfo-4.1.12-16.1 libsamba-hostconfig0-4.1.12-16.1 libsamba-hostconfig0-debuginfo-4.1.12-16.1 libsamba-util0-4.1.12-16.1 libsamba-util0-debuginfo-4.1.12-16.1 libsamdb0-4.1.12-16.1 libsamdb0-debuginfo-4.1.12-16.1 libsmbclient-raw0-4.1.12-16.1 libsmbclient-raw0-debuginfo-4.1.12-16.1 libsmbclient0-4.1.12-16.1 libsmbclient0-debuginfo-4.1.12-16.1 libsmbconf0-4.1.12-16.1 libsmbconf0-debuginfo-4.1.12-16.1 libsmbldap0-4.1.12-16.1 libsmbldap0-debuginfo-4.1.12-16.1 libtevent-util0-4.1.12-16.1 libtevent-util0-debuginfo-4.1.12-16.1 libwbclient0-4.1.12-16.1 libwbclient0-debuginfo-4.1.12-16.1 samba-4.1.12-16.1 samba-client-4.1.12-16.1 samba-client-debuginfo-4.1.12-16.1 samba-debuginfo-4.1.12-16.1 samba-debugsource-4.1.12-16.1 samba-libs-4.1.12-16.1 samba-libs-debuginfo-4.1.12-16.1 samba-winbind-4.1.12-16.1 samba-winbind-debuginfo-4.1.12-16.1 - SUSE Linux Enterprise Server 12 (s390x x86_64): libdcerpc-binding0-32bit-4.1.12-16.1 libdcerpc-binding0-debuginfo-32bit-4.1.12-16.1 libdcerpc0-32bit-4.1.12-16.1 libdcerpc0-debuginfo-32bit-4.1.12-16.1 libgensec0-32bit-4.1.12-16.1 libgensec0-debuginfo-32bit-4.1.12-16.1 libndr-krb5pac0-32bit-4.1.12-16.1 libndr-krb5pac0-debuginfo-32bit-4.1.12-16.1 libndr-nbt0-32bit-4.1.12-16.1 libndr-nbt0-debuginfo-32bit-4.1.12-16.1 libndr-standard0-32bit-4.1.12-16.1 libndr-standard0-debuginfo-32bit-4.1.12-16.1 libndr0-32bit-4.1.12-16.1 libndr0-debuginfo-32bit-4.1.12-16.1 libnetapi0-32bit-4.1.12-16.1 libnetapi0-debuginfo-32bit-4.1.12-16.1 libpdb0-32bit-4.1.12-16.1 libpdb0-debuginfo-32bit-4.1.12-16.1 libsamba-credentials0-32bit-4.1.12-16.1 libsamba-credentials0-debuginfo-32bit-4.1.12-16.1 libsamba-hostconfig0-32bit-4.1.12-16.1 libsamba-hostconfig0-debuginfo-32bit-4.1.12-16.1 libsamba-util0-32bit-4.1.12-16.1 libsamba-util0-debuginfo-32bit-4.1.12-16.1 libsamdb0-32bit-4.1.12-16.1 libsamdb0-debuginfo-32bit-4.1.12-16.1 libsmbclient-raw0-32bit-4.1.12-16.1 libsmbclient-raw0-debuginfo-32bit-4.1.12-16.1 libsmbclient0-32bit-4.1.12-16.1 libsmbclient0-debuginfo-32bit-4.1.12-16.1 libsmbconf0-32bit-4.1.12-16.1 libsmbconf0-debuginfo-32bit-4.1.12-16.1 libsmbldap0-32bit-4.1.12-16.1 libsmbldap0-debuginfo-32bit-4.1.12-16.1 libtevent-util0-32bit-4.1.12-16.1 libtevent-util0-debuginfo-32bit-4.1.12-16.1 libwbclient0-32bit-4.1.12-16.1 libwbclient0-debuginfo-32bit-4.1.12-16.1 samba-32bit-4.1.12-16.1 samba-client-32bit-4.1.12-16.1 samba-client-debuginfo-32bit-4.1.12-16.1 samba-debuginfo-32bit-4.1.12-16.1 samba-libs-32bit-4.1.12-16.1 samba-libs-debuginfo-32bit-4.1.12-16.1 samba-winbind-32bit-4.1.12-16.1 samba-winbind-debuginfo-32bit-4.1.12-16.1 - SUSE Linux Enterprise Server 12 (noarch): samba-doc-4.1.12-16.1 - SUSE Linux Enterprise Desktop 12 (x86_64): libdcerpc-binding0-32bit-4.1.12-16.1 libdcerpc-binding0-4.1.12-16.1 libdcerpc-binding0-debuginfo-32bit-4.1.12-16.1 libdcerpc-binding0-debuginfo-4.1.12-16.1 libdcerpc0-32bit-4.1.12-16.1 libdcerpc0-4.1.12-16.1 libdcerpc0-debuginfo-32bit-4.1.12-16.1 libdcerpc0-debuginfo-4.1.12-16.1 libgensec0-32bit-4.1.12-16.1 libgensec0-4.1.12-16.1 libgensec0-debuginfo-32bit-4.1.12-16.1 libgensec0-debuginfo-4.1.12-16.1 libndr-krb5pac0-32bit-4.1.12-16.1 libndr-krb5pac0-4.1.12-16.1 libndr-krb5pac0-debuginfo-32bit-4.1.12-16.1 libndr-krb5pac0-debuginfo-4.1.12-16.1 libndr-nbt0-32bit-4.1.12-16.1 libndr-nbt0-4.1.12-16.1 libndr-nbt0-debuginfo-32bit-4.1.12-16.1 libndr-nbt0-debuginfo-4.1.12-16.1 libndr-standard0-32bit-4.1.12-16.1 libndr-standard0-4.1.12-16.1 libndr-standard0-debuginfo-32bit-4.1.12-16.1 libndr-standard0-debuginfo-4.1.12-16.1 libndr0-32bit-4.1.12-16.1 libndr0-4.1.12-16.1 libndr0-debuginfo-32bit-4.1.12-16.1 libndr0-debuginfo-4.1.12-16.1 libnetapi0-32bit-4.1.12-16.1 libnetapi0-4.1.12-16.1 libnetapi0-debuginfo-32bit-4.1.12-16.1 libnetapi0-debuginfo-4.1.12-16.1 libpdb0-32bit-4.1.12-16.1 libpdb0-4.1.12-16.1 libpdb0-debuginfo-32bit-4.1.12-16.1 libpdb0-debuginfo-4.1.12-16.1 libregistry0-4.1.12-16.1 libregistry0-debuginfo-4.1.12-16.1 libsamba-credentials0-32bit-4.1.12-16.1 libsamba-credentials0-4.1.12-16.1 libsamba-credentials0-debuginfo-32bit-4.1.12-16.1 libsamba-credentials0-debuginfo-4.1.12-16.1 libsamba-hostconfig0-32bit-4.1.12-16.1 libsamba-hostconfig0-4.1.12-16.1 libsamba-hostconfig0-debuginfo-32bit-4.1.12-16.1 libsamba-hostconfig0-debuginfo-4.1.12-16.1 libsamba-util0-32bit-4.1.12-16.1 libsamba-util0-4.1.12-16.1 libsamba-util0-debuginfo-32bit-4.1.12-16.1 libsamba-util0-debuginfo-4.1.12-16.1 libsamdb0-32bit-4.1.12-16.1 libsamdb0-4.1.12-16.1 libsamdb0-debuginfo-32bit-4.1.12-16.1 libsamdb0-debuginfo-4.1.12-16.1 libsmbclient-raw0-32bit-4.1.12-16.1 libsmbclient-raw0-4.1.12-16.1 libsmbclient-raw0-debuginfo-32bit-4.1.12-16.1 libsmbclient-raw0-debuginfo-4.1.12-16.1 libsmbclient0-32bit-4.1.12-16.1 libsmbclient0-4.1.12-16.1 libsmbclient0-debuginfo-32bit-4.1.12-16.1 libsmbclient0-debuginfo-4.1.12-16.1 libsmbconf0-32bit-4.1.12-16.1 libsmbconf0-4.1.12-16.1 libsmbconf0-debuginfo-32bit-4.1.12-16.1 libsmbconf0-debuginfo-4.1.12-16.1 libsmbldap0-32bit-4.1.12-16.1 libsmbldap0-4.1.12-16.1 libsmbldap0-debuginfo-32bit-4.1.12-16.1 libsmbldap0-debuginfo-4.1.12-16.1 libtevent-util0-32bit-4.1.12-16.1 libtevent-util0-4.1.12-16.1 libtevent-util0-debuginfo-32bit-4.1.12-16.1 libtevent-util0-debuginfo-4.1.12-16.1 libwbclient0-32bit-4.1.12-16.1 libwbclient0-4.1.12-16.1 libwbclient0-debuginfo-32bit-4.1.12-16.1 libwbclient0-debuginfo-4.1.12-16.1 samba-32bit-4.1.12-16.1 samba-4.1.12-16.1 samba-client-32bit-4.1.12-16.1 samba-client-4.1.12-16.1 samba-client-debuginfo-32bit-4.1.12-16.1 samba-client-debuginfo-4.1.12-16.1 samba-debuginfo-32bit-4.1.12-16.1 samba-debuginfo-4.1.12-16.1 samba-debugsource-4.1.12-16.1 samba-libs-32bit-4.1.12-16.1 samba-libs-4.1.12-16.1 samba-libs-debuginfo-32bit-4.1.12-16.1 samba-libs-debuginfo-4.1.12-16.1 samba-winbind-32bit-4.1.12-16.1 samba-winbind-4.1.12-16.1 samba-winbind-debuginfo-32bit-4.1.12-16.1 samba-winbind-debuginfo-4.1.12-16.1 - SUSE Linux Enterprise Desktop 12 (noarch): samba-doc-4.1.12-16.1 References: https://www.suse.com/security/cve/CVE-2015-0240.html https://bugzilla.suse.com/show_bug.cgi?id=872912 https://bugzilla.suse.com/show_bug.cgi?id=873922 https://bugzilla.suse.com/show_bug.cgi?id=876312 https://bugzilla.suse.com/show_bug.cgi?id=889175 https://bugzilla.suse.com/show_bug.cgi?id=898031 https://bugzilla.suse.com/show_bug.cgi?id=908627 https://bugzilla.suse.com/show_bug.cgi?id=913238 https://bugzilla.suse.com/show_bug.cgi?id=917376 . SUSE Security Patch for openssl tackles CVE-2016-2106, delivering crucial enhancements to bolster overall system protection.. SUSE Security Update,Samba Patch,Important Fixes,System Security. . Severity: Important. LinuxSecurity.com Team

Calendar%202 Feb 23, 2015 Important SuSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

Should Linux servers automatically install security updates?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/157-should-linux-servers-automatically-install-security-updates?task=poll.vote&format=json
157
radio
0
[{"id":506,"title":"Yes \u2014 critical security patches should install automatically.","votes":0,"type":"x","order":1,"pct":0,"resources":[]},{"id":507,"title":"No \u2014 every update should be tested before deployment.","votes":0,"type":"x","order":2,"pct":0,"resources":[]},{"id":508,"title":"Only critical vulnerabilities should auto-install.","votes":0,"type":"x","order":3,"pct":0,"resources":[]},{"id":509,"title":"I patch when Reddit starts panicking.","votes":1,"type":"x","order":4,"pct":100,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200