File _patchinfo of Package patchinfo.4807

<patchinfo incident="4807">
  <issue id="968223" tracker="bnc">VUL-0: CVE-2016-0771: samba: Read of uninitialized memory DNS TXT handling</issue>
  <issue id="968222" tracker="bnc">VUL-0: CVE-2015-7560: samba: Getting and setting Windows ACLs on symlinks can change permissions on link target.</issue>
  <issue id="953972" tracker="bnc"></issue>
  <issue id="953382" tracker="bnc"></issue>
  <issue id="CVE-2015-7560" tracker="cve" />
  <issue id="CVE-2016-0771" tracker="cve" />
  <category>security</category>
  <rating>important</rating>
  <packager>lmuelle</packager>
  <description>
This update for samba fixes the following issues:

Version update to 4.1.23.
+ Getting and setting Windows ACLs on symlinks can change permissions on link
  target; CVE-2015-7560; (bso#11648); (boo#968222).
+ Fix Out-of-bounds read in internal DNS server; CVE-2016-0771;
  (bso#11128); (bso#11686); (boo#968223).

Also fixed:
- Ensure samlogon fallback requests are rerouted after kerberos failure;
  (bnc#953382); (bnc#953972).
</description>
  <summary>Security update for samba</summary>
</patchinfo>
openSUSE Build Service is sponsored by