SUSE-SU-2018:2319-1
Dashboard / Vulnerabilities / SUSE-SU-2018:2319-1
SUSE-SU-2018:2319-1
Summary: Security update for samba
Details: This update for samba fixes the following issues: The following security vulnerability was fixed: - CVE-2018-10858: Fixed insufficient input validation on client directory listing in libsmbclient; (bsc#1103411); The following other change was made: - s3: winbind: Fix 'winbind normalize names' in wb_getpwsid(); - winbind: honor 'winbind use default domain' with empty domain (bsc#1087303) - winbind: do not modify credentials in NTLM passthru (bsc#1068059) - net: fix net ads keytab handling (bsc#1067700) - fix vfs_ceph flock stub
References: https://www.suse.com/support/update/announcement/2018/suse-su-20182319-1/, https://bugzilla.suse.com/1067700, https://bugzilla.suse.com/1068059, https://bugzilla.suse.com/1087303, https://bugzilla.suse.com/1103411, https://www.suse.com/security/cve/CVE-2018-10858
Affected packages
Package
Name: samba
Purl: pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Desktop%2012%20SP3
Affected ranges
Type: ECOSYSTEM
Events:
