{"schema_version":"1.7.2","id":"OESA-2022-1507","modified":"2022-01-28T11:03:29Z","published":"2022-01-28T11:03:29Z","upstream":["CVE-2021-43566"],"summary":"samba security update","details":"Samba is a suite of programs for Linux and Unix to interoperate with Windows.\r\n\r\nSecurity Fix(es):\r\n\r\nAll versions of Samba prior to 4.13.16 are vulnerable to a malicious client using an SMB1 or NFS race to allow a directory to be created in an area of the server file system not exported under the share definition. Note that SMB1 has to be enabled, or the share also available via NFS in order for this attack to succeed.(CVE-2021-43566)","affected":[{"package":{"ecosystem":"openEuler:20.03-LTS-SP1","name":"samba","purl":"pkg:rpm/openEuler/samba\u0026distro=openEuler-20.03-LTS-SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.11.12-9.oe1"}]}],"ecosystem_specific":{"aarch64":["libsmbclient-devel-4.11.12-9.oe1.aarch64.rpm","samba-devel-4.11.12-9.oe1.aarch64.rpm","ctdb-tests-4.11.12-9.oe1.aarch64.rpm","samba-libs-4.11.12-9.oe1.aarch64.rpm","python3-samba-4.11.12-9.oe1.aarch64.rpm","ctdb-4.11.12-9.oe1.aarch64.rpm","samba-common-tools-4.11.12-9.oe1.aarch64.rpm","samba-debuginfo-4.11.12-9.oe1.aarch64.rpm","libwbclient-4.11.12-9.oe1.aarch64.rpm","samba-debugsource-4.11.12-9.oe1.aarch64.rpm","samba-dc-bind-dlz-4.11.12-9.oe1.aarch64.rpm","samba-common-4.11.12-9.oe1.aarch64.rpm","samba-test-4.11.12-9.oe1.aarch64.rpm","samba-winbind-modules-4.11.12-9.oe1.aarch64.rpm","python3-samba-test-4.11.12-9.oe1.aarch64.rpm","samba-dc-4.11.12-9.oe1.aarch64.rpm","samba-help-4.11.12-9.oe1.aarch64.rpm","samba-winbind-4.11.12-9.oe1.aarch64.rpm","samba-krb5-printing-4.11.12-9.oe1.aarch64.rpm","python3-samba-dc-4.11.12-9.oe1.aarch64.rpm","samba-4.11.12-9.oe1.aarch64.rpm","samba-winbind-krb5-locator-4.11.12-9.oe1.aarch64.rpm","libsmbclient-4.11.12-9.oe1.aarch64.rpm","samba-client-4.11.12-9.oe1.aarch64.rpm","samba-winbind-clients-4.11.12-9.oe1.aarch64.rpm","libwbclient-devel-4.11.12-9.oe1.aarch64.rpm","samba-dc-provision-4.11.12-9.oe1.aarch64.rpm"],"noarch":["samba-pidl-4.11.12-9.oe1.noarch.rpm"],"src":["samba-4.11.12-9.oe1.src.rpm"],"x86_64":["samba-vfs-glusterfs-4.11.12-9.oe1.x86_64.rpm","samba-krb5-printing-4.11.12-9.oe1.x86_64.rpm","samba-winbind-modules-4.11.12-9.oe1.x86_64.rpm","samba-client-4.11.12-9.oe1.x86_64.rpm","samba-debuginfo-4.11.12-9.oe1.x86_64.rpm","samba-dc-provision-4.11.12-9.oe1.x86_64.rpm","samba-help-4.11.12-9.oe1.x86_64.rpm","python3-samba-test-4.11.12-9.oe1.x86_64.rpm","samba-winbind-krb5-locator-4.11.12-9.oe1.x86_64.rpm","samba-winbind-clients-4.11.12-9.oe1.x86_64.rpm","samba-test-4.11.12-9.oe1.x86_64.rpm","samba-winbind-4.11.12-9.oe1.x86_64.rpm","ctdb-tests-4.11.12-9.oe1.x86_64.rpm","samba-common-tools-4.11.12-9.oe1.x86_64.rpm","samba-dc-bind-dlz-4.11.12-9.oe1.x86_64.rpm","libsmbclient-4.11.12-9.oe1.x86_64.rpm","samba-devel-4.11.12-9.oe1.x86_64.rpm","samba-common-4.11.12-9.oe1.x86_64.rpm","libsmbclient-devel-4.11.12-9.oe1.x86_64.rpm","samba-debugsource-4.11.12-9.oe1.x86_64.rpm","samba-4.11.12-9.oe1.x86_64.rpm","libwbclient-devel-4.11.12-9.oe1.x86_64.rpm","python3-samba-dc-4.11.12-9.oe1.x86_64.rpm","python3-samba-4.11.12-9.oe1.x86_64.rpm","libwbclient-4.11.12-9.oe1.x86_64.rpm","samba-dc-4.11.12-9.oe1.x86_64.rpm","samba-libs-4.11.12-9.oe1.x86_64.rpm","ctdb-4.11.12-9.oe1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:20.03-LTS-SP2","name":"samba","purl":"pkg:rpm/openEuler/samba\u0026distro=openEuler-20.03-LTS-SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.11.12-9.oe1"}]}],"ecosystem_specific":{"aarch64":["samba-client-4.11.12-9.oe1.aarch64.rpm","libwbclient-4.11.12-9.oe1.aarch64.rpm","samba-test-4.11.12-9.oe1.aarch64.rpm","samba-debugsource-4.11.12-9.oe1.aarch64.rpm","samba-devel-4.11.12-9.oe1.aarch64.rpm","samba-winbind-4.11.12-9.oe1.aarch64.rpm","python3-samba-test-4.11.12-9.oe1.aarch64.rpm","samba-common-4.11.12-9.oe1.aarch64.rpm","libsmbclient-4.11.12-9.oe1.aarch64.rpm","libwbclient-devel-4.11.12-9.oe1.aarch64.rpm","samba-dc-4.11.12-9.oe1.aarch64.rpm","ctdb-tests-4.11.12-9.oe1.aarch64.rpm","samba-dc-provision-4.11.12-9.oe1.aarch64.rpm","libsmbclient-devel-4.11.12-9.oe1.aarch64.rpm","python3-samba-dc-4.11.12-9.oe1.aarch64.rpm","samba-winbind-krb5-locator-4.11.12-9.oe1.aarch64.rpm","samba-dc-bind-dlz-4.11.12-9.oe1.aarch64.rpm","samba-winbind-modules-4.11.12-9.oe1.aarch64.rpm","samba-krb5-printing-4.11.12-9.oe1.aarch64.rpm","samba-common-tools-4.11.12-9.oe1.aarch64.rpm","samba-debuginfo-4.11.12-9.oe1.aarch64.rpm","python3-samba-4.11.12-9.oe1.aarch64.rpm","samba-libs-4.11.12-9.oe1.aarch64.rpm","samba-winbind-clients-4.11.12-9.oe1.aarch64.rpm","ctdb-4.11.12-9.oe1.aarch64.rpm","samba-4.11.12-9.oe1.aarch64.rpm","samba-help-4.11.12-9.oe1.aarch64.rpm"],"noarch":["samba-pidl-4.11.12-9.oe1.noarch.rpm"],"src":["samba-4.11.12-9.oe1.src.rpm"],"x86_64":["samba-winbind-clients-4.11.12-9.oe1.x86_64.rpm","libsmbclient-4.11.12-9.oe1.x86_64.rpm","samba-4.11.12-9.oe1.x86_64.rpm","samba-libs-4.11.12-9.oe1.x86_64.rpm","ctdb-4.11.12-9.oe1.x86_64.rpm","samba-winbind-krb5-locator-4.11.12-9.oe1.x86_64.rpm","samba-debuginfo-4.11.12-9.oe1.x86_64.rpm","libwbclient-devel-4.11.12-9.oe1.x86_64.rpm","samba-client-4.11.12-9.oe1.x86_64.rpm","python3-samba-test-4.11.12-9.oe1.x86_64.rpm","libsmbclient-devel-4.11.12-9.oe1.x86_64.rpm","python3-samba-4.11.12-9.oe1.x86_64.rpm","ctdb-tests-4.11.12-9.oe1.x86_64.rpm","samba-krb5-printing-4.11.12-9.oe1.x86_64.rpm","samba-winbind-4.11.12-9.oe1.x86_64.rpm","samba-test-4.11.12-9.oe1.x86_64.rpm","samba-winbind-modules-4.11.12-9.oe1.x86_64.rpm","samba-debugsource-4.11.12-9.oe1.x86_64.rpm","python3-samba-dc-4.11.12-9.oe1.x86_64.rpm","samba-common-4.11.12-9.oe1.x86_64.rpm","samba-devel-4.11.12-9.oe1.x86_64.rpm","libwbclient-4.11.12-9.oe1.x86_64.rpm","samba-dc-4.11.12-9.oe1.x86_64.rpm","samba-vfs-glusterfs-4.11.12-9.oe1.x86_64.rpm","samba-help-4.11.12-9.oe1.x86_64.rpm","samba-dc-bind-dlz-4.11.12-9.oe1.x86_64.rpm","samba-common-tools-4.11.12-9.oe1.x86_64.rpm","samba-dc-provision-4.11.12-9.oe1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:20.03-LTS-SP3","name":"samba","purl":"pkg:rpm/openEuler/samba\u0026distro=openEuler-20.03-LTS-SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.11.12-8.oe1"}]}],"ecosystem_specific":{"aarch64":["samba-debugsource-4.11.12-8.oe1.aarch64.rpm","ctdb-tests-4.11.12-8.oe1.aarch64.rpm","samba-libs-4.11.12-8.oe1.aarch64.rpm","ctdb-4.11.12-8.oe1.aarch64.rpm","samba-common-4.11.12-8.oe1.aarch64.rpm","python3-samba-dc-4.11.12-8.oe1.aarch64.rpm","samba-4.11.12-8.oe1.aarch64.rpm","samba-winbind-modules-4.11.12-8.oe1.aarch64.rpm","samba-client-4.11.12-8.oe1.aarch64.rpm","samba-help-4.11.12-8.oe1.aarch64.rpm","samba-common-tools-4.11.12-8.oe1.aarch64.rpm","samba-dc-provision-4.11.12-8.oe1.aarch64.rpm","samba-test-4.11.12-8.oe1.aarch64.rpm","libwbclient-4.11.12-8.oe1.aarch64.rpm","libsmbclient-devel-4.11.12-8.oe1.aarch64.rpm","samba-dc-4.11.12-8.oe1.aarch64.rpm","samba-debuginfo-4.11.12-8.oe1.aarch64.rpm","python3-samba-4.11.12-8.oe1.aarch64.rpm","libwbclient-devel-4.11.12-8.oe1.aarch64.rpm","libsmbclient-4.11.12-8.oe1.aarch64.rpm","samba-winbind-4.11.12-8.oe1.aarch64.rpm","samba-devel-4.11.12-8.oe1.aarch64.rpm","samba-dc-bind-dlz-4.11.12-8.oe1.aarch64.rpm","python3-samba-test-4.11.12-8.oe1.aarch64.rpm","samba-winbind-krb5-locator-4.11.12-8.oe1.aarch64.rpm","samba-winbind-clients-4.11.12-8.oe1.aarch64.rpm","samba-krb5-printing-4.11.12-8.oe1.aarch64.rpm"],"noarch":["samba-pidl-4.11.12-8.oe1.noarch.rpm"],"src":["samba-4.11.12-8.oe1.src.rpm"],"x86_64":["ctdb-tests-4.11.12-8.oe1.x86_64.rpm","libwbclient-devel-4.11.12-8.oe1.x86_64.rpm","samba-devel-4.11.12-8.oe1.x86_64.rpm","libsmbclient-devel-4.11.12-8.oe1.x86_64.rpm","samba-test-4.11.12-8.oe1.x86_64.rpm","samba-krb5-printing-4.11.12-8.oe1.x86_64.rpm","python3-samba-test-4.11.12-8.oe1.x86_64.rpm","samba-debuginfo-4.11.12-8.oe1.x86_64.rpm","samba-debugsource-4.11.12-8.oe1.x86_64.rpm","samba-libs-4.11.12-8.oe1.x86_64.rpm","samba-winbind-4.11.12-8.oe1.x86_64.rpm","libwbclient-4.11.12-8.oe1.x86_64.rpm","samba-client-4.11.12-8.oe1.x86_64.rpm","samba-winbind-clients-4.11.12-8.oe1.x86_64.rpm","samba-dc-bind-dlz-4.11.12-8.oe1.x86_64.rpm","samba-common-tools-4.11.12-8.oe1.x86_64.rpm","libsmbclient-4.11.12-8.oe1.x86_64.rpm","samba-winbind-krb5-locator-4.11.12-8.oe1.x86_64.rpm","samba-common-4.11.12-8.oe1.x86_64.rpm","python3-samba-dc-4.11.12-8.oe1.x86_64.rpm","samba-4.11.12-8.oe1.x86_64.rpm","ctdb-4.11.12-8.oe1.x86_64.rpm","samba-dc-4.11.12-8.oe1.x86_64.rpm","samba-help-4.11.12-8.oe1.x86_64.rpm","python3-samba-4.11.12-8.oe1.x86_64.rpm","samba-winbind-modules-4.11.12-8.oe1.x86_64.rpm","samba-dc-provision-4.11.12-8.oe1.x86_64.rpm","samba-vfs-glusterfs-4.11.12-8.oe1.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2022-1507"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-43566"}],"database_specific":{"severity":"Low"}}