SUSE-SU-2016:3271-1 -- SLES samba, libdcerpc-binding0, libdcerpc0, libndr-krb5pac0, libndr-nbt0, libndr-standard0, libndr0, libnetapi0, libsamba-credentials0, libsamba-errors0, libsamba-hostconfig0, libsamba-passdb0, libsamba-util0, libsamdb0, libsmbclient0, libsmbconf0, libsmbldap0, libtevent-util0, libwbclient0ID: oval:org.secpod.oval:def:89045288 | Date: (C)2021-08-03 (M)2024-02-15 |
Class: PATCH | Family: unix |
This update for samba fixes the following issues: Security issues fixed: - CVE-2016-2125: Don"t send delegated credentials to all servers. - CVE-2016-2126: Denial of service due to a client triggered crash in the winbindd parent process. - CVE-2016-2123: Heap-based Buffer Overflow Remote Code Execution Vulnerability. This component is not built into our packages, so we are not affected. Non security issues fixed: - s3/client: obey "disable netbios" smb.conf param, don"t connect via NBT port;
Platform: |
SUSE Linux Enterprise Server 12 SP2 |
Product: |
samba |
libdcerpc-binding0 |
libdcerpc0 |
libndr-krb5pac0 |
libndr-nbt0 |
libndr-standard0 |
libndr0 |
libnetapi0 |
libsamba-credentials0 |
libsamba-errors0 |
libsamba-hostconfig0 |
libsamba-passdb0 |
libsamba-util0 |
libsamdb0 |
libsmbclient0 |
libsmbconf0 |
libsmbldap0 |
libtevent-util0 |
libwbclient0 |