FlawAtlas
Search the atlas
SUSE-SU-2017:0859-1 Not scored

Security update for samba

This update for samba fixes the following issues: Security issues fixed: - CVE-2017-2619: Symlink race permits opening files outside share directory (bsc#1027147). Bugfixes: - Don't package man pages for VFS modules that aren't built (bsc#993707). - sync_req: make async_connect_send() 'reentrant'; (bso#12105); (bsc#1024416). - Document 'winbind: ignore domains' parameter; (bsc#1019416). - Prevent core, make sure response->extra_data.data is always cleared out; (bsc#993692).

Exploit probability Not scored
Published March 29, 2017
Required by Not available
Last source change February 4, 2026

02 / AFFECTED SOFTWARE

Affected packages

SUSE:Linux Enterprise Desktop 12 SP1 samba
SUSE:Linux Enterprise Desktop 12 SP2 samba
SUSE:Linux Enterprise High Availability Extension 12 SP1 samba
SUSE:Linux Enterprise Server 12 SP1 samba
SUSE:Linux Enterprise Server 12 SP2 samba
SUSE:Linux Enterprise Server for Raspberry Pi 12 SP2 samba
SUSE:Linux Enterprise Server for SAP Applications 12 SP1 samba
SUSE:Linux Enterprise Server for SAP Applications 12 SP2 samba
SUSE:Linux Enterprise Software Development Kit 12 SP1 samba
SUSE:Linux Enterprise Software Development Kit 12 SP2 samba

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities SUSE-SU-2017:0859-1

This update for samba fixes the following issues: Security issues fixed: - CVE-2017-2619: Symlink race permits opening files outside share directory (bsc#1027147). Bugfixes: - Don't package man pages for VFS modules that aren't built (bsc#993707). - sync_req: make async_connect_send() 'reentrant'; (bso#12105); (bsc#1024416). - Document 'winbind: ignore domains' parameter; (bsc#1019416). - Prevent core, make sure response->extra_data.data is always cleared out; (bsc#993692).

View original source

05 / REFERENCES

Further evidence