SUSE-SU-2017:2237-1
Dashboard / Vulnerabilities / SUSE-SU-2017:2237-1
SUSE-SU-2017:2237-1
Summary: Security update for samba and resource-agents
Details: This update provides Samba 4.6.7, which fixes the following issues: - CVE-2017-11103: Metadata were being taken from the unauthenticated plaintext (the Ticket) rather than the authenticated and encrypted KDC response. (bsc#1048278) - Fix cephwrap_chdir(). (bsc#1048790) - Fix ctdb logs to /var/log/log.ctdb instead of /var/log/ctdb. (bsc#1048339) - Fix inconsistent ctdb socket path. (bsc#1048352) - Fix non-admin cephx authentication. (bsc#1048387) - CTDB cannot start when there is no persistent database. (bsc#1052577) The CTDB resource agent was also fixed to not fail when the database is empty.
References: https://www.suse.com/support/update/announcement/2017/suse-su-20172237-1/, https://bugzilla.suse.com/1048278, https://bugzilla.suse.com/1048339, https://bugzilla.suse.com/1048352, https://bugzilla.suse.com/1048387, https://bugzilla.suse.com/1048790, https://bugzilla.suse.com/1052577, https://bugzilla.suse.com/1054017, https://www.suse.com/security/cve/CVE-2017-11103
Affected packages
Package
Name: samba
Purl: pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
