[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3983-1 samba -- samba

ID: oval:org.secpod.oval:def:53143Date: (C)2019-04-04   (M)2023-12-20
Class: PATCHFamily: unix




Multiple security issues have been discoverd in Samba, a SMB/CIFS file, print, and login server for Unix: CVE-2017-12150 Stefan Metzmacher discovered multiple code paths where SMB signing was not enforced. CVE-2017-12151 Stefan Metzmacher discovered that tools using libsmbclient did not enforce encryption when following DFS redirects, which could allow a man-in-the-middle attacker to read or modify connections which were meant to be encrypted. CVE-2017-12163 Yihan Lian and Zhibin Hu discovered that insufficient range checks in the processing of SMB1 write requests could result in disclosure of server memory.

Platform:
Linux Mint 3
Product:
samba
Reference:
DSA-3983-1
CVE-2017-12150
CVE-2017-12151
CVE-2017-12163
CVE    3
CVE-2017-12163
CVE-2017-12151
CVE-2017-12150
CPE    305
cpe:/a:samba:samba:4.1.13
cpe:/a:samba:samba:4.1.12
cpe:/a:samba:samba:4.1.11
cpe:/a:samba:samba:4.1.10
...

© SecPod Technologies