File _patchinfo of Package patchinfo.4807
<patchinfo incident="4807">
<issue id="968223" tracker="bnc">VUL-0: CVE-2016-0771: samba: Read of uninitialized memory DNS TXT handling</issue>
<issue id="968222" tracker="bnc">VUL-0: CVE-2015-7560: samba: Getting and setting Windows ACLs on symlinks can change permissions on link target.</issue>
<issue id="953972" tracker="bnc"></issue>
<issue id="953382" tracker="bnc"></issue>
<issue id="CVE-2015-7560" tracker="cve" />
<issue id="CVE-2016-0771" tracker="cve" />
<category>security</category>
<rating>important</rating>
<packager>lmuelle</packager>
<description>
This update for samba fixes the following issues:
Version update to 4.1.23.
+ Getting and setting Windows ACLs on symlinks can change permissions on link
target; CVE-2015-7560; (bso#11648); (boo#968222).
+ Fix Out-of-bounds read in internal DNS server; CVE-2016-0771;
(bso#11128); (bso#11686); (boo#968223).
Also fixed:
- Ensure samlogon fallback requests are rerouted after kerberos failure;
(bnc#953382); (bnc#953972).
</description>
<summary>Security update for samba</summary>
</patchinfo>