forked from pool/samba
Accepting request 950276 from home:npower:update_samba
- Update to 4.15.5 * CVE-2021-44141: UNIX extensions in SMB1 disclose whether the outside target of a symlink exists; (bso#14911); (bsc#1193690). * CVE-2021-44142: Out-of-Bound Read/Write on Samba vfs_fruit module; (bso#14914); (bsc#1194859). * CVE-2022-0336: Re-adding an SPN skips subsequent SPN conflict checks; bso#14950); (bsc#1195048). - CVE-2021-44141: Information leak via symlinks of existance of files or directories outside of the exported share; (bso#14911); (bsc#1193690); - CVE-2021-44142: Out-of-bounds heap read/write vulnerability in VFS module vfs_fruit allows code execution; (bso#14914); (bsc#1194859); - CVE-2022-0336: Samba AD users with permission to write to an account can impersonate arbitrary services; (bso#14950); (bsc#1195048); OBS-URL: https://build.opensuse.org/request/show/950276 OBS-URL: https://build.opensuse.org/package/show/network:samba:STABLE/samba?expand=0&rev=659
This commit is contained in:
@@ -1,3 +1,28 @@
|
||||
-------------------------------------------------------------------
|
||||
Mon Jan 31 14:23:44 UTC 2022 - Noel Power <nopower@suse.com>
|
||||
|
||||
- Update to 4.15.5
|
||||
* CVE-2021-44141: UNIX extensions in SMB1 disclose whether the
|
||||
outside target of a symlink exists; (bso#14911);
|
||||
(bsc#1193690).
|
||||
* CVE-2021-44142: Out-of-Bound Read/Write on Samba vfs_fruit
|
||||
module; (bso#14914); (bsc#1194859).
|
||||
* CVE-2022-0336: Re-adding an SPN skips subsequent SPN
|
||||
conflict checks; bso#14950); (bsc#1195048).
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Wed Jan 26 12:00:35 UTC 2022 - Samuel Cabrero <scabrero@suse.de>
|
||||
|
||||
- CVE-2021-44141: Information leak via symlinks of existance of
|
||||
files or directories outside of the exported share; (bso#14911);
|
||||
(bsc#1193690);
|
||||
- CVE-2021-44142: Out-of-bounds heap read/write vulnerability
|
||||
in VFS module vfs_fruit allows code execution; (bso#14914);
|
||||
(bsc#1194859);
|
||||
- CVE-2022-0336: Samba AD users with permission to write to an
|
||||
account can impersonate arbitrary services; (bso#14950);
|
||||
(bsc#1195048);
|
||||
|
||||
-------------------------------------------------------------------
|
||||
Fri Jan 21 12:37:42 UTC 2022 - Samuel Cabrero <scabrero@suse.de>
|
||||
|
||||
|
Reference in New Issue
Block a user