Release Info

Advisory: CLSA-2023:1689701119

OS: Ubuntu 18.04 ELS

Public date: 2023-07-18 13:25:21

Project: samba

Version: 2:4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2

Errata link: https://errata.cloudlinux.com/ubuntu18-els/CLSA-2023-1689701119.html

Changelog

* SECURITY UPDATE: use after free in Samba AD DC RPC server - debian/patches/CVE-2021-3738-pre.patch: prepare service routines before fixing CVE-2021-3738 - debian/patches/CVE-2021-3738.patch: avoids a crash caused by use-after-free in Samba AD DC RPC server - CVE-2021-3738.patch * SECURITY UPDATE: integer overflow in PAC parsing - debian/patches/CVE-2022-42898.patch: catch overflows that result from adding PAC_INFO_BUFFER_SIZE - CVE-2022-42898

Update

Update command: apt-get update apt-get --only-upgrade install samba*

Packages list

ctdb_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libnss-winbind_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libpam-winbind_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libparse-pidl-perl_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libsmbclient_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libsmbclient-dev_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libwbclient-dev_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb libwbclient0_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb python-samba_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb registry-tools_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-common_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_all.deb samba-common-bin_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-dev_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-dsdb-modules_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-libs_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-testsuite_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb samba-vfs-modules_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb smbclient_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb winbind_4.7.6+dfsg~ubuntu-0ubuntu2.29+tuxcare.els2_amd64.deb

CVEs

CVE-2021-3738
CVE-2022-42898