Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.123695
Category:Oracle Linux Local Security Checks
Title:Oracle: Security Advisory (ELSA-2013-0506)
Summary:The remote host is missing an update for the 'samba4' package(s) announced via the ELSA-2013-0506 advisory.
Description:Summary:
The remote host is missing an update for the 'samba4' package(s) announced via the ELSA-2013-0506 advisory.

Vulnerability Insight:
[4.0.0-55.rc4]
- Fix dependencies of samba4-test package.
- related: #896142

[4.0.0-54.rc4]
- Fix summary and description of dc subpackages.
- resolves: #896142
- Remove conflicting libsmbclient.7 manpage.
- resolves: #896240

[4.0.0-53.rc4]
- Fix provides filter rules to remove conflicting libraries from samba4-libs.
- resolves: #895718

[4.0.0-52.rc4]
- Fix typo in winbind-krb-locator post uninstall script.
- related: #864889

[4.0.0-51.rc4]
- Make sure we use the same directory as samba package for the winbind pipe.
- resolves: #886157

[4.0.0-50.rc4]
- Fix typo in winbind-krb-locator post uninstall script.
- related: #864889

[4.0.0-49.rc4]
- Fix Netlogon AES encryption.
- resolves: #885089

[4.0.0-48.rc4]
- Fix IPA trust AD lookup of users.
- resolves: #878564

[4.0.0-47.rc4]
- Add require for krb5-libs >= 1.10 to samba4-libs.
- resolves: #877533

[4.0.0-46.rc4]
- Rename /etc/sysconfig/samba4 to name to mach init scripts.
- resolves: #877085

[4.0.0-45.rc4]
- Don't require samba4-common and samba4-test in samba4-devel package.
- related: #871748

[4.0.0-44.rc4]
- Make libnetapi and internal library to fix dependencies.
- resolves: #873491

[4.0.0-43.rc4]
- Move libnetapi and internal printing migration lib to libs package.
- related: #766333

[4.0.0-42.rc4]
- Fix perl, pam and logrotate dependencies.
- related: #766333

[4.0.0-41.rc4]
- Fix library dependencies found by rpmdiff.
- Update winbind offline logon patch.
- related: #766333

[4.0.0-40.rc4]
- Move libgpo to samba-common
- resolves: #871748

[4.0.0-39.rc4]
- Rebase to version 4.0.0rc4.
- related: #766333

[4.0.0-38.rc3]
- Add missing export KRB5CCNAME in init scripts.
- resolves: #868419

[4.0.0-37.rc3]
- Move /var/log/samba to samba-common package for winbind which
requires it.
- resolves: #868248

[4.0.0-36.rc3]
- The standard auth modules need to be built into smbd to function.
- resolves: #867854

[4.0.0-35.rc3]
- Move pam_winbind.conf to the package of the module.
- resolves: #867317

[4.0.0-34.rc3]
- Built auth_builtin as static module.
- related: #766333

[4.0.0-33.rc3]
- Add back the AES patches which didn't make it in rc3.
- related: #766333

[4.0.0-32.rc3]
- Rebase to version 4.0.0rc3.
- related: #766333

[4.0.0-31.rc2]
- Use alternatives to configure winbind_krb5_locator.so
- resolves: #864889

[4.0.0-30.rc2]
- Fix multilib package installation.
- resolves: #862047
- Filter out libsmbclient and libwbclient provides.
- resolves: #861892
- Rebase to version 4.0.0rc2.
- related: #766333

[4.0.0-29.rc1]
- Fix Requires and Conflicts.
- related: #766333

[4.0.0-28.rc1]
- Move pam_winbind and wbinfo manpages to the right subpackage.
- related: #766333

[4.0.0-27.rc1]
- Fix permission for init scripts.
- Define a common KRB5CCNAME for smbd and winbind.
- Set piddir back to /var/run in RHEL6.
- related: #766333

[4.0.0-26.rc1]
- Add '-fno-strict-aliasing' to CFLAGS again.
- related: ... [Please see the references for more information on the vulnerabilities]

Affected Software/OS:
'samba4' package(s) on Oracle Linux 6.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2012-1182
http://lists.apple.com/archives/security-announce/2012/May/msg00001.html
Debian Security Information: DSA-2450 (Google Search)
http://www.debian.org/security/2012/dsa-2450
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078726.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078836.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/078258.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-May/080567.html
HPdes Security Advisory: HPSBMU02790
http://marc.info/?l=bugtraq&m=133951282306605&w=2
HPdes Security Advisory: HPSBUX02789
http://marc.info/?l=bugtraq&m=134323086902585&w=2
HPdes Security Advisory: SSRT100824
HPdes Security Advisory: SSRT100872
http://www.mandriva.com/security/advisories?name=MDVSA-2012:055
http://www.securitytracker.com/id?1026913
http://secunia.com/advisories/48751
http://secunia.com/advisories/48754
http://secunia.com/advisories/48816
http://secunia.com/advisories/48818
http://secunia.com/advisories/48844
http://secunia.com/advisories/48873
http://secunia.com/advisories/48879
http://secunia.com/advisories/48999
SuSE Security Announcement: SUSE-SU-2012:0501 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00007.html
SuSE Security Announcement: SUSE-SU-2012:0502 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00008.html
SuSE Security Announcement: SUSE-SU-2012:0504 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00009.html
SuSE Security Announcement: SUSE-SU-2012:0515 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-04/msg00014.html
http://www.ubuntu.com/usn/USN-1423-1
CopyrightCopyright (C) 2015 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.