diff options
author | Thomas Deutschmann <whissi@gentoo.org> | 2020-12-24 15:16:08 +0100 |
---|---|---|
committer | Thomas Deutschmann <whissi@gentoo.org> | 2020-12-24 15:16:08 +0100 |
commit | ea35db4303f80b8dc5f6dffe7a6c3111e9e37b5a (patch) | |
tree | 1f9f8ac2a6e01dd98312f6728d832d1f20e28ea4 | |
parent | [ GLSA 202012-23 ] Apache Tomcat: Information disclosure (diff) | |
download | gentoo-ea35db4303f80b8dc5f6dffe7a6c3111e9e37b5a.tar.gz gentoo-ea35db4303f80b8dc5f6dffe7a6c3111e9e37b5a.tar.bz2 gentoo-ea35db4303f80b8dc5f6dffe7a6c3111e9e37b5a.zip |
[ GLSA 202012-24 ] Samba: Multiple vulnerabilities
Signed-off-by: Thomas Deutschmann <whissi@gentoo.org>
-rw-r--r-- | glsa-202012-24.xml | 51 |
1 files changed, 51 insertions, 0 deletions
diff --git a/glsa-202012-24.xml b/glsa-202012-24.xml new file mode 100644 index 000000000000..b0f388729a48 --- /dev/null +++ b/glsa-202012-24.xml @@ -0,0 +1,51 @@ +<?xml version="1.0" encoding="UTF-8"?> +<!DOCTYPE glsa SYSTEM "http://www.gentoo.org/dtd/glsa.dtd"> +<glsa id="202012-24"> + <title>Samba: Multiple vulnerabilities</title> + <synopsis>Multiple vulnerabilities have been found in Samba, the worst of + which could result in a Denial of Service condition. + </synopsis> + <product type="ebuild">samba</product> + <announced>2020-12-24</announced> + <revised count="1">2020-12-24</revised> + <bug>743433</bug> + <bug>751724</bug> + <access>remote</access> + <affected> + <package name="net-fs/samba" auto="yes" arch="*"> + <unaffected range="ge">4.12.9</unaffected> + <vulnerable range="lt">4.12.9</vulnerable> + </package> + </affected> + <background> + <p>Samba is a suite of SMB and CIFS client/server programs.</p> + </background> + <description> + <p>Multiple vulnerabilities have been discovered in Samba. Please review + the CVE identifiers referenced below for details. + </p> + </description> + <impact type="normal"> + <p>Please review the referenced CVE identifiers for details.</p> + </impact> + <workaround> + <p>There is no known workaround at this time.</p> + </workaround> + <resolution> + <p>All Samba users should upgrade to the latest version:</p> + + <code> + # emerge --sync + # emerge --ask --oneshot --verbose ">=net-fs/samba-4.12.9" + </code> + + </resolution> + <references> + <uri link="https://nvd.nist.gov/vuln/detail/CVE-2020-14318">CVE-2020-14318</uri> + <uri link="https://nvd.nist.gov/vuln/detail/CVE-2020-14323">CVE-2020-14323</uri> + <uri link="https://nvd.nist.gov/vuln/detail/CVE-2020-14383">CVE-2020-14383</uri> + <uri link="https://nvd.nist.gov/vuln/detail/CVE-2020-1472">CVE-2020-1472</uri> + </references> + <metadata tag="requester" timestamp="2020-12-23T17:13:10Z">whissi</metadata> + <metadata tag="submitter" timestamp="2020-12-24T14:11:44Z">whissi</metadata> +</glsa> |