| Summary: | samba new security issues CVE-2019-3880 and CVE-2018-16860 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | Buchan Milne <bgmilne> |
| Status: | RESOLVED OLD | QA Contact: | Sec team <security> |
| Severity: | normal | ||
| Priority: | Normal | CC: | marja11, smelror |
| Version: | 6 | ||
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Source RPM: | samba-4.7.12-1.2.mga6.src.rpm | CVE: | CVE-2019-3880 CVE-2018-16860 |
| Status comment: | |||
|
Description
David Walser
2019-04-12 22:08:02 CEST
Assigning to the registered maintainer. Assignee:
bugsquad =>
bgmilne Debian has issued an advisory for this on April 8: https://www.debian.org/security/2019/dsa-4427 Ubuntu has issued an advisory for this on April 8: https://usn.ubuntu.com/3939-1/ openSUSE has issued an advisory for this on April 10: https://lists.opensuse.org/opensuse-updates/2019-04/msg00095.html New release, 4.10.3, fixes CVE-2018-16860 https://www.samba.org/samba/history/samba-4.10.3.html Status comment:
(none) =>
Fixed upstream in 4.10.3 https://www.samba.org/samba/security/CVE-2018-16860.html building with MIT krb5 would also fix it. Summary:
samba new security issue CVE-2019-3880 =>
samba new security issues CVE-2019-3880 and CVE-2018-16860 samba-4.10.3-1.mga7 uploaded for Cauldron. Whiteboard:
MGA6TOO =>
(none) Debian advisory for CVE-2018-16860 from May 14: https://www.debian.org/security/2019/dsa-4443 and from Ubuntu: https://usn.ubuntu.com/3976-1/ Mageia 6 is EOL. Status:
NEW =>
RESOLVED |