SUSE alert SUSE-SU-2021:1439-1 (samba)
| From: | sle-security-updates@lists.suse.com | |
| To: | sle-security-updates@lists.suse.com | |
| Subject: | SUSE-SU-2021:1439-1: important: Security update for samba | |
| Date: | Thu, 29 Apr 2021 18:17:55 +0200 | |
| Message-ID: | <20210429161755.44F07FDE1@maintenance.suse.de> |
SUSE Security Update: Security update for samba ______________________________________________________________________________ Announcement ID: SUSE-SU-2021:1439-1 Rating: important References: #1178469 #1184677 Cross-References: CVE-2021-20254 CVSS scores: CVE-2021-20254 (SUSE): 7.1 CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:L Affected Products: SUSE Linux Enterprise Server 12-SP2-LTSS-SAP SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON SUSE Linux Enterprise Server 12-SP2-BCL ______________________________________________________________________________ An update that solves one vulnerability and has one errata is now available. Description: This update for samba fixes the following issues: - CVE-2021-20254: Fixed a buffer overrun in sids_to_unixids() (bsc#1184677). - Adjust smbcacls '--propagate-inheritance' feature to align with upstream (bsc#1178469). Patch Instructions: To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - SUSE Linux Enterprise Server 12-SP2-LTSS-SAP: zypper in -t patch SUSE-SLE-SERVER-12-SP2-LTSS-SAP-2021-1439=1 - SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON: zypper in -t patch SUSE-SLE-SERVER-12-SP2-LTSS-ERICSSON-2021-1439=1 - SUSE Linux Enterprise Server 12-SP2-BCL: zypper in -t patch SUSE-SLE-SERVER-12-SP2-BCL-2021-1439=1 Package List: - SUSE Linux Enterprise Server 12-SP2-LTSS-SAP (noarch): samba-doc-4.4.2-38.42.1 - SUSE Linux Enterprise Server 12-SP2-LTSS-SAP (x86_64): ctdb-4.4.2-38.42.1 ctdb-debuginfo-4.4.2-38.42.1 libdcerpc-binding0-32bit-4.4.2-38.42.1 libdcerpc-binding0-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-4.4.2-38.42.1 libdcerpc0-32bit-4.4.2-38.42.1 libdcerpc0-4.4.2-38.42.1 libdcerpc0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc0-debuginfo-4.4.2-38.42.1 libndr-krb5pac0-32bit-4.4.2-38.42.1 libndr-krb5pac0-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-32bit-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-4.4.2-38.42.1 libndr-nbt0-32bit-4.4.2-38.42.1 libndr-nbt0-4.4.2-38.42.1 libndr-nbt0-debuginfo-32bit-4.4.2-38.42.1 libndr-nbt0-debuginfo-4.4.2-38.42.1 libndr-standard0-32bit-4.4.2-38.42.1 libndr-standard0-4.4.2-38.42.1 libndr-standard0-debuginfo-32bit-4.4.2-38.42.1 libndr-standard0-debuginfo-4.4.2-38.42.1 libndr0-32bit-4.4.2-38.42.1 libndr0-4.4.2-38.42.1 libndr0-debuginfo-32bit-4.4.2-38.42.1 libndr0-debuginfo-4.4.2-38.42.1 libnetapi0-32bit-4.4.2-38.42.1 libnetapi0-4.4.2-38.42.1 libnetapi0-debuginfo-32bit-4.4.2-38.42.1 libnetapi0-debuginfo-4.4.2-38.42.1 libsamba-credentials0-32bit-4.4.2-38.42.1 libsamba-credentials0-4.4.2-38.42.1 libsamba-credentials0-debuginfo-32bit-4.4.2-38.42.1 libsamba-credentials0-debuginfo-4.4.2-38.42.1 libsamba-errors0-32bit-4.4.2-38.42.1 libsamba-errors0-4.4.2-38.42.1 libsamba-errors0-debuginfo-32bit-4.4.2-38.42.1 libsamba-errors0-debuginfo-4.4.2-38.42.1 libsamba-hostconfig0-32bit-4.4.2-38.42.1 libsamba-hostconfig0-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-32bit-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-4.4.2-38.42.1 libsamba-passdb0-32bit-4.4.2-38.42.1 libsamba-passdb0-4.4.2-38.42.1 libsamba-passdb0-debuginfo-32bit-4.4.2-38.42.1 libsamba-passdb0-debuginfo-4.4.2-38.42.1 libsamba-util0-32bit-4.4.2-38.42.1 libsamba-util0-4.4.2-38.42.1 libsamba-util0-debuginfo-32bit-4.4.2-38.42.1 libsamba-util0-debuginfo-4.4.2-38.42.1 libsamdb0-32bit-4.4.2-38.42.1 libsamdb0-4.4.2-38.42.1 libsamdb0-debuginfo-32bit-4.4.2-38.42.1 libsamdb0-debuginfo-4.4.2-38.42.1 libsmbclient0-32bit-4.4.2-38.42.1 libsmbclient0-4.4.2-38.42.1 libsmbclient0-debuginfo-32bit-4.4.2-38.42.1 libsmbclient0-debuginfo-4.4.2-38.42.1 libsmbconf0-32bit-4.4.2-38.42.1 libsmbconf0-4.4.2-38.42.1 libsmbconf0-debuginfo-32bit-4.4.2-38.42.1 libsmbconf0-debuginfo-4.4.2-38.42.1 libsmbldap0-32bit-4.4.2-38.42.1 libsmbldap0-4.4.2-38.42.1 libsmbldap0-debuginfo-32bit-4.4.2-38.42.1 libsmbldap0-debuginfo-4.4.2-38.42.1 libtevent-util0-32bit-4.4.2-38.42.1 libtevent-util0-4.4.2-38.42.1 libtevent-util0-debuginfo-32bit-4.4.2-38.42.1 libtevent-util0-debuginfo-4.4.2-38.42.1 libwbclient0-32bit-4.4.2-38.42.1 libwbclient0-4.4.2-38.42.1 libwbclient0-debuginfo-32bit-4.4.2-38.42.1 libwbclient0-debuginfo-4.4.2-38.42.1 samba-4.4.2-38.42.1 samba-client-32bit-4.4.2-38.42.1 samba-client-4.4.2-38.42.1 samba-client-debuginfo-32bit-4.4.2-38.42.1 samba-client-debuginfo-4.4.2-38.42.1 samba-debuginfo-4.4.2-38.42.1 samba-debugsource-4.4.2-38.42.1 samba-libs-32bit-4.4.2-38.42.1 samba-libs-4.4.2-38.42.1 samba-libs-debuginfo-32bit-4.4.2-38.42.1 samba-libs-debuginfo-4.4.2-38.42.1 samba-winbind-32bit-4.4.2-38.42.1 samba-winbind-4.4.2-38.42.1 samba-winbind-debuginfo-32bit-4.4.2-38.42.1 samba-winbind-debuginfo-4.4.2-38.42.1 - SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON (noarch): samba-doc-4.4.2-38.42.1 - SUSE Linux Enterprise Server 12-SP2-LTSS-ERICSSON (x86_64): ctdb-4.4.2-38.42.1 ctdb-debuginfo-4.4.2-38.42.1 libdcerpc-binding0-32bit-4.4.2-38.42.1 libdcerpc-binding0-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-4.4.2-38.42.1 libdcerpc0-32bit-4.4.2-38.42.1 libdcerpc0-4.4.2-38.42.1 libdcerpc0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc0-debuginfo-4.4.2-38.42.1 libndr-krb5pac0-32bit-4.4.2-38.42.1 libndr-krb5pac0-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-32bit-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-4.4.2-38.42.1 libndr-nbt0-32bit-4.4.2-38.42.1 libndr-nbt0-4.4.2-38.42.1 libndr-nbt0-debuginfo-32bit-4.4.2-38.42.1 libndr-nbt0-debuginfo-4.4.2-38.42.1 libndr-standard0-32bit-4.4.2-38.42.1 libndr-standard0-4.4.2-38.42.1 libndr-standard0-debuginfo-32bit-4.4.2-38.42.1 libndr-standard0-debuginfo-4.4.2-38.42.1 libndr0-32bit-4.4.2-38.42.1 libndr0-4.4.2-38.42.1 libndr0-debuginfo-32bit-4.4.2-38.42.1 libndr0-debuginfo-4.4.2-38.42.1 libnetapi0-32bit-4.4.2-38.42.1 libnetapi0-4.4.2-38.42.1 libnetapi0-debuginfo-32bit-4.4.2-38.42.1 libnetapi0-debuginfo-4.4.2-38.42.1 libsamba-credentials0-32bit-4.4.2-38.42.1 libsamba-credentials0-4.4.2-38.42.1 libsamba-credentials0-debuginfo-32bit-4.4.2-38.42.1 libsamba-credentials0-debuginfo-4.4.2-38.42.1 libsamba-errors0-32bit-4.4.2-38.42.1 libsamba-errors0-4.4.2-38.42.1 libsamba-errors0-debuginfo-32bit-4.4.2-38.42.1 libsamba-errors0-debuginfo-4.4.2-38.42.1 libsamba-hostconfig0-32bit-4.4.2-38.42.1 libsamba-hostconfig0-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-32bit-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-4.4.2-38.42.1 libsamba-passdb0-32bit-4.4.2-38.42.1 libsamba-passdb0-4.4.2-38.42.1 libsamba-passdb0-debuginfo-32bit-4.4.2-38.42.1 libsamba-passdb0-debuginfo-4.4.2-38.42.1 libsamba-util0-32bit-4.4.2-38.42.1 libsamba-util0-4.4.2-38.42.1 libsamba-util0-debuginfo-32bit-4.4.2-38.42.1 libsamba-util0-debuginfo-4.4.2-38.42.1 libsamdb0-32bit-4.4.2-38.42.1 libsamdb0-4.4.2-38.42.1 libsamdb0-debuginfo-32bit-4.4.2-38.42.1 libsamdb0-debuginfo-4.4.2-38.42.1 libsmbclient0-32bit-4.4.2-38.42.1 libsmbclient0-4.4.2-38.42.1 libsmbclient0-debuginfo-32bit-4.4.2-38.42.1 libsmbclient0-debuginfo-4.4.2-38.42.1 libsmbconf0-32bit-4.4.2-38.42.1 libsmbconf0-4.4.2-38.42.1 libsmbconf0-debuginfo-32bit-4.4.2-38.42.1 libsmbconf0-debuginfo-4.4.2-38.42.1 libsmbldap0-32bit-4.4.2-38.42.1 libsmbldap0-4.4.2-38.42.1 libsmbldap0-debuginfo-32bit-4.4.2-38.42.1 libsmbldap0-debuginfo-4.4.2-38.42.1 libtevent-util0-32bit-4.4.2-38.42.1 libtevent-util0-4.4.2-38.42.1 libtevent-util0-debuginfo-32bit-4.4.2-38.42.1 libtevent-util0-debuginfo-4.4.2-38.42.1 libwbclient0-32bit-4.4.2-38.42.1 libwbclient0-4.4.2-38.42.1 libwbclient0-debuginfo-32bit-4.4.2-38.42.1 libwbclient0-debuginfo-4.4.2-38.42.1 samba-4.4.2-38.42.1 samba-client-32bit-4.4.2-38.42.1 samba-client-4.4.2-38.42.1 samba-client-debuginfo-32bit-4.4.2-38.42.1 samba-client-debuginfo-4.4.2-38.42.1 samba-debuginfo-4.4.2-38.42.1 samba-debugsource-4.4.2-38.42.1 samba-libs-32bit-4.4.2-38.42.1 samba-libs-4.4.2-38.42.1 samba-libs-debuginfo-32bit-4.4.2-38.42.1 samba-libs-debuginfo-4.4.2-38.42.1 samba-winbind-32bit-4.4.2-38.42.1 samba-winbind-4.4.2-38.42.1 samba-winbind-debuginfo-32bit-4.4.2-38.42.1 samba-winbind-debuginfo-4.4.2-38.42.1 - SUSE Linux Enterprise Server 12-SP2-BCL (x86_64): libdcerpc-binding0-32bit-4.4.2-38.42.1 libdcerpc-binding0-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc-binding0-debuginfo-4.4.2-38.42.1 libdcerpc0-32bit-4.4.2-38.42.1 libdcerpc0-4.4.2-38.42.1 libdcerpc0-debuginfo-32bit-4.4.2-38.42.1 libdcerpc0-debuginfo-4.4.2-38.42.1 libndr-krb5pac0-32bit-4.4.2-38.42.1 libndr-krb5pac0-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-32bit-4.4.2-38.42.1 libndr-krb5pac0-debuginfo-4.4.2-38.42.1 libndr-nbt0-32bit-4.4.2-38.42.1 libndr-nbt0-4.4.2-38.42.1 libndr-nbt0-debuginfo-32bit-4.4.2-38.42.1 libndr-nbt0-debuginfo-4.4.2-38.42.1 libndr-standard0-32bit-4.4.2-38.42.1 libndr-standard0-4.4.2-38.42.1 libndr-standard0-debuginfo-32bit-4.4.2-38.42.1 libndr-standard0-debuginfo-4.4.2-38.42.1 libndr0-32bit-4.4.2-38.42.1 libndr0-4.4.2-38.42.1 libndr0-debuginfo-32bit-4.4.2-38.42.1 libndr0-debuginfo-4.4.2-38.42.1 libnetapi0-32bit-4.4.2-38.42.1 libnetapi0-4.4.2-38.42.1 libnetapi0-debuginfo-32bit-4.4.2-38.42.1 libnetapi0-debuginfo-4.4.2-38.42.1 libsamba-credentials0-32bit-4.4.2-38.42.1 libsamba-credentials0-4.4.2-38.42.1 libsamba-credentials0-debuginfo-32bit-4.4.2-38.42.1 libsamba-credentials0-debuginfo-4.4.2-38.42.1 libsamba-errors0-32bit-4.4.2-38.42.1 libsamba-errors0-4.4.2-38.42.1 libsamba-errors0-debuginfo-32bit-4.4.2-38.42.1 libsamba-errors0-debuginfo-4.4.2-38.42.1 libsamba-hostconfig0-32bit-4.4.2-38.42.1 libsamba-hostconfig0-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-32bit-4.4.2-38.42.1 libsamba-hostconfig0-debuginfo-4.4.2-38.42.1 libsamba-passdb0-32bit-4.4.2-38.42.1 libsamba-passdb0-4.4.2-38.42.1 libsamba-passdb0-debuginfo-32bit-4.4.2-38.42.1 libsamba-passdb0-debuginfo-4.4.2-38.42.1 libsamba-util0-32bit-4.4.2-38.42.1 libsamba-util0-4.4.2-38.42.1 libsamba-util0-debuginfo-32bit-4.4.2-38.42.1 libsamba-util0-debuginfo-4.4.2-38.42.1 libsamdb0-32bit-4.4.2-38.42.1 libsamdb0-4.4.2-38.42.1 libsamdb0-debuginfo-32bit-4.4.2-38.42.1 libsamdb0-debuginfo-4.4.2-38.42.1 libsmbclient0-32bit-4.4.2-38.42.1 libsmbclient0-4.4.2-38.42.1 libsmbclient0-debuginfo-32bit-4.4.2-38.42.1 libsmbclient0-debuginfo-4.4.2-38.42.1 libsmbconf0-32bit-4.4.2-38.42.1 libsmbconf0-4.4.2-38.42.1 libsmbconf0-debuginfo-32bit-4.4.2-38.42.1 libsmbconf0-debuginfo-4.4.2-38.42.1 libsmbldap0-32bit-4.4.2-38.42.1 libsmbldap0-4.4.2-38.42.1 libsmbldap0-debuginfo-32bit-4.4.2-38.42.1 libsmbldap0-debuginfo-4.4.2-38.42.1 libtevent-util0-32bit-4.4.2-38.42.1 libtevent-util0-4.4.2-38.42.1 libtevent-util0-debuginfo-32bit-4.4.2-38.42.1 libtevent-util0-debuginfo-4.4.2-38.42.1 libwbclient0-32bit-4.4.2-38.42.1 libwbclient0-4.4.2-38.42.1 libwbclient0-debuginfo-32bit-4.4.2-38.42.1 libwbclient0-debuginfo-4.4.2-38.42.1 samba-4.4.2-38.42.1 samba-client-32bit-4.4.2-38.42.1 samba-client-4.4.2-38.42.1 samba-client-debuginfo-32bit-4.4.2-38.42.1 samba-client-debuginfo-4.4.2-38.42.1 samba-debuginfo-4.4.2-38.42.1 samba-debugsource-4.4.2-38.42.1 samba-libs-32bit-4.4.2-38.42.1 samba-libs-4.4.2-38.42.1 samba-libs-debuginfo-32bit-4.4.2-38.42.1 samba-libs-debuginfo-4.4.2-38.42.1 samba-winbind-32bit-4.4.2-38.42.1 samba-winbind-4.4.2-38.42.1 samba-winbind-debuginfo-32bit-4.4.2-38.42.1 samba-winbind-debuginfo-4.4.2-38.42.1 - SUSE Linux Enterprise Server 12-SP2-BCL (noarch): samba-doc-4.4.2-38.42.1 References: https://www.suse.com/security/cve/CVE-2021-20254.html https://bugzilla.suse.com/1178469 https://bugzilla.suse.com/1184677
