Bug 8179 - [UPDATE REQUEST] SAMBA -> 4.6.12
: [UPDATE REQUEST] SAMBA -> 4.6.12
Status: CONFIRMED
Product: Desktop Bugs
Classification: ROSA Desktop
Component: Main Packages
: Fresh
: All Linux
: Normal normal
: ---
Assigned To: ROSA Linux Bugs
: ROSA Linux Bugs
https://www.debian.org/security/2017/...
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2017-07-27 18:57 MSD by Vladimir Potapov
Modified: 2018-01-13 01:03 MSK (History)
3 users (show)

See Also:
RPM Package: samba
ISO-related:
Bad POT generating:
Upstream:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Vladimir Potapov 2017-07-27 18:57:29 MSD
https://abf.io/build_lists/2884245
https://abf.io/build_lists/2884247
Advisory: Update samba to 4.3.13 with many CVEs fixed.
Up min server protocol to SMB2
Comment 1 Zombie Ryushu 2017-11-23 14:18:14 MSK
Several vulnerabilities have been discovered in Samba, a SMB/CIFS file, print, and login server for Unix. The Common Vulnerabilities and Exposures project identifies the following issues:

    CVE-2017-14746

    Yihan Lian and Zhibin Hu of Qihoo 360 GearTeam discovered a use-after-free vulnerability allowing a client to compromise a SMB server via malicious SMB1 requests.
    CVE-2017-15275

    Volker Lendecke of SerNet and the Samba team discovered that Samba is prone to a heap memory information leak, where server allocated heap memory may be returned to the client without being cleared.
Comment 2 Zombie Ryushu 2018-01-03 12:31:41 MSK
Updated samba packages fix security vulnerabilities:

Stefan Metzmacher discovered that Samba incorrectly enforced SMB signing in
certain situations. A remote attacker could use this issue to perform a man
in the middle attack. (CVE-2017-12150)

Stefan Metzmacher discovered that Samba incorrectly handled encryption
across DFS redirects. A remote attacker could use this issue to perform a
man in the middle attack. (CVE-2017-12151)

Yihan Lian and Zhibin Hu discovered that Samba incorrectly handled memory
when SMB1 is being used. A remote attacker could possibly use this issue to
obtain server memory contents. (CVE-2017-12163)

Yihan Lian and Zhibin Hu discovered that Samba incorrectly handled memory
when processing certain SMB1 requests. A remote attacker could possibly use
this issue to execute arbitrary code. (CVE-2017-14746)

Volker Lendecke discovered that Samba incorrectly cleared memory when
returning data to a client. A remote attacker could possibly use this issue
to obtain sensitive information. (CVE-2017-15275)

The samba package has been updated to version 4.6.12 to fix these issues and
other bugs.

Also, the talloc package has been updated to 2.1.10 and the tevent package
has been updated to 0.9.34, as they were needed by the updated samba.
Comment 3 Zombie Ryushu 2018-01-03 12:32:15 MSK
https://advisories.mageia.org/MGASA-2018-0023.html
Comment 4 Zombie Ryushu 2018-01-12 02:32:30 MSK
A pull Request has been created.
Comment 5 Andrey Bondrov 2018-01-12 06:45:28 MSK
(In reply to comment #4)
> A pull Request has been created.

As I commented in that pull request, please update .abf.yml with new sources as well.
Comment 6 Zombie Ryushu 2018-01-13 01:03:35 MSK
I did "Create Container" is that Sufficient?