USN-3595-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-3595-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3595-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-3595-1
Related
Published
2018-03-13T14:28:15.192197Z
Modified
2018-03-13T14:28:15.192197Z
Summary
samba vulnerabilities
Details

Björn Baumbach discovered that Samba incorrectly validated permissions when changing account passwords via LDAP. An authenticated attacker could use this issue to change the password of other users, including administrators, and perform actions as those users. (CVE-2018-1057)

It was discovered that Samba incorrectly validated inputs to the RPC spoolss service. An authenticated attacker could use this issue to cause the service to crash, resulting in a denial of service. (CVE-2018-1050)

References

Affected packages

Ubuntu:14.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.14.04.14?arch=src?distro=trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.14.04.14

Affected versions

2:3.*

2:3.6.18-1ubuntu3

2:4.*

2:4.0.10+dfsg-4ubuntu2
2:4.0.13+dfsg-1ubuntu1
2:4.1.3+dfsg-2ubuntu2
2:4.1.3+dfsg-2ubuntu3
2:4.1.3+dfsg-2ubuntu4
2:4.1.3+dfsg-2ubuntu5
2:4.1.6+dfsg-1ubuntu1
2:4.1.6+dfsg-1ubuntu2
2:4.1.6+dfsg-1ubuntu2.14.04.1
2:4.1.6+dfsg-1ubuntu2.14.04.2
2:4.1.6+dfsg-1ubuntu2.14.04.3
2:4.1.6+dfsg-1ubuntu2.14.04.4
2:4.1.6+dfsg-1ubuntu2.14.04.5
2:4.1.6+dfsg-1ubuntu2.14.04.7
2:4.1.6+dfsg-1ubuntu2.14.04.8
2:4.1.6+dfsg-1ubuntu2.14.04.9
2:4.1.6+dfsg-1ubuntu2.14.04.11
2:4.1.6+dfsg-1ubuntu2.14.04.12
2:4.1.6+dfsg-1ubuntu2.14.04.13
2:4.3.8+dfsg-0ubuntu0.14.04.2
2:4.3.9+dfsg-0ubuntu0.14.04.1
2:4.3.9+dfsg-0ubuntu0.14.04.3
2:4.3.11+dfsg-0ubuntu0.14.04.1
2:4.3.11+dfsg-0ubuntu0.14.04.2
2:4.3.11+dfsg-0ubuntu0.14.04.3
2:4.3.11+dfsg-0ubuntu0.14.04.4
2:4.3.11+dfsg-0ubuntu0.14.04.6
2:4.3.11+dfsg-0ubuntu0.14.04.7
2:4.3.11+dfsg-0ubuntu0.14.04.8
2:4.3.11+dfsg-0ubuntu0.14.04.9
2:4.3.11+dfsg-0ubuntu0.14.04.10
2:4.3.11+dfsg-0ubuntu0.14.04.11
2:4.3.11+dfsg-0ubuntu0.14.04.12
2:4.3.11+dfsg-0ubuntu0.14.04.13

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbsharemodes0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-doc": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbsharemodes0": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "python-samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbsharemodes-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbsharemodes-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libpam-smbpass-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.14.04.14",
            "libpam-smbpass": "2:4.3.11+dfsg-0ubuntu0.14.04.14"
        }
    ]
}

Ubuntu:16.04:LTS / samba

Package

Name
samba
Purl
pkg:deb/ubuntu/samba@2:4.3.11+dfsg-0ubuntu0.16.04.13?arch=src?distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2:4.3.11+dfsg-0ubuntu0.16.04.13

Affected versions

2:4.*

2:4.1.17+dfsg-4ubuntu2
2:4.1.20+dfsg-1ubuntu1
2:4.1.20+dfsg-1ubuntu2
2:4.1.20+dfsg-1ubuntu3
2:4.1.20+dfsg-1ubuntu5
2:4.3.3+dfsg-1ubuntu1
2:4.3.3+dfsg-1ubuntu2
2:4.3.3+dfsg-1ubuntu3
2:4.3.6+dfsg-1ubuntu1
2:4.3.8+dfsg-0ubuntu1
2:4.3.9+dfsg-0ubuntu0.16.04.1
2:4.3.9+dfsg-0ubuntu0.16.04.2
2:4.3.9+dfsg-0ubuntu0.16.04.3
2:4.3.11+dfsg-0ubuntu0.16.04.1
2:4.3.11+dfsg-0ubuntu0.16.04.3
2:4.3.11+dfsg-0ubuntu0.16.04.5
2:4.3.11+dfsg-0ubuntu0.16.04.6
2:4.3.11+dfsg-0ubuntu0.16.04.7
2:4.3.11+dfsg-0ubuntu0.16.04.8
2:4.3.11+dfsg-0ubuntu0.16.04.9
2:4.3.11+dfsg-0ubuntu0.16.04.10
2:4.3.11+dfsg-0ubuntu0.16.04.11
2:4.3.11+dfsg-0ubuntu0.16.04.12

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "libwbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-libs": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "registry-tools": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-common-bin": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libwbclient0-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dsdb-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libpam-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libnss-winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-vfs-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-common-bin-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-testsuite": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "smbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libsmbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libsmbclient-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libwbclient0": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libparse-pidl-perl-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dsdb-modules": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "registry-tools-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-vfs-modules-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "python-samba": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "ctdb": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libsmbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libnss-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libsmbclient-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-libs-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dbg": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-testsuite-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-common": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "winbind-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libpam-winbind": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "smbclient": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libwbclient-dev-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "samba-dev": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "libparse-pidl-perl": "2:4.3.11+dfsg-0ubuntu0.16.04.13",
            "ctdb-dbgsym": "2:4.3.11+dfsg-0ubuntu0.16.04.13"
        }
    ]
}