SUSE-SU-2017:0858-1
Dashboard / Vulnerabilities / SUSE-SU-2017:0858-1
SUSE-SU-2017:0858-1
Summary: Security update for samba
Details: This update for samba fixes the following issues: Security issues fixed: - CVE-2017-2619: Symlink race permits opening files outside share directory (bsc#1027147). Bugfixes: - Force usage of ncurses6-config thru NCURSES_CONFIG env var (bsc#1023847). - Add missing ldb module directory (bsc#1012092). - Don't package man pages for VFS modules that aren't built (bsc#993707). - sync_req: make async_connect_send() 'reentrant'; (bso#12105); (bsc#1024416). - Document 'winbind: ignore domains' parameter; (bsc#1019416). - Prevent core, make sure response->extra_data.data is always cleared out; (bsc#993692).
References: https://www.suse.com/support/update/announcement/2017/suse-su-20170858-1/, https://bugzilla.suse.com/1012092, https://bugzilla.suse.com/1019416, https://bugzilla.suse.com/1023847, https://bugzilla.suse.com/1024416, https://bugzilla.suse.com/1027147, https://bugzilla.suse.com/993692, https://bugzilla.suse.com/993707, https://www.suse.com/security/cve/CVE-2017-2619
Affected packages
Package
Name: samba
Purl: pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP2
Affected ranges
Type: ECOSYSTEM
Events:
