{"id":44592,"date":"2021-12-14T04:55:15","date_gmt":"2021-12-13T19:55:15","guid":{"rendered":"https:\/\/jirak.net\/wp\/usn-5174-2-samba-regression\/"},"modified":"2021-12-14T05:34:06","modified_gmt":"2021-12-13T20:34:06","slug":"usn-5174-2-samba-regression","status":"publish","type":"post","link":"https:\/\/jirak.net\/wp\/usn-5174-2-samba-regression\/","title":{"rendered":"USN-5174-2: Samba regression"},"content":{"rendered":"<p>USN-5174-2: Samba regression<\/p>\n<p>USN-5174-1 fixed vulnerabilities in Samba. Some of the changes introduced a<br \/>\nregression in Kerberos authentication in certain environments.<\/p>\n<p>Please see the following upstream bug for more information:<br \/>\nhttps:\/\/bugzilla.samba.org\/show_bug.cgi?id=14922<\/p>\n<p>This update fixes the problem.<\/p>\n<p>Original advisory details:<\/p>\n<p> Stefan Metzmacher discovered that Samba incorrectly handled SMB1 client<br \/>\n connections. A remote attacker could possibly use this issue to downgrade<br \/>\n connections to plaintext authentication. (CVE-2016-2124)<\/p>\n<p> Andrew Bartlett discovered that Samba incorrectly mapping domain users to<br \/>\n local users. An authenticated attacker could possibly use this issue to<br \/>\n become root on domain members. (CVE-2020-25717)<\/p>\n<p> Andrew Bartlett discovered that Samba did not properly check sensitive<br \/>\n attributes. An authenticated attacker could possibly use this issue to<br \/>\n escalate privileges. (CVE-2020-25722)<\/p>\n<p> Joseph Sutton discovered that Samba incorrectly handled certain TGS<br \/>\n requests. An authenticated attacker could possibly use this issue to cause<br \/>\n Samba to crash, resulting in a denial of service. (CVE-2021-3671)<\/p>\n<p> The fix for CVE-2020-25717 results in possible behaviour changes that could<br \/>\n affect certain environments. Please see the upstream advisory for more<br \/>\n information:<\/p>\n<p> https:\/\/www.samba.org\/samba\/security\/CVE-2020-25717.html<br \/>\nSource: <a href=\"https:\/\/ubuntu.com\/security\/notices\/USN-5174-2\" target=\"_blank\" rel=\"noopener\">USN-5174-2: Samba regression<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<div class=\"mh-excerpt\"><p>USN-5174-2: Samba regression USN-5174-1 fixed vulnerabilities in Samba. Some of the changes introduced a regression in Kerberos authentication in certain environments. Please see the following upstream bug for more information: https:\/\/bugzilla.samba.org\/show_bug.cgi?id=14922 This update fixes the problem. Original advisory details: Stefan Metzmacher discovered that Samba incorrectly handled SMB1 client connections. A remote attacker could possibly use this issue to downgrade connections to plaintext authentication. (CVE-2016-2124) Andrew Bartlett discovered that Samba incorrectly mapping domain users to local users. An authenticated attacker could possibly use this issue to become root on domain members. (CVE-2020-25717) Andrew Bartlett discovered that Samba did not properly check sensitive attributes. An authenticated attacker could possibly use this issue to escalate privileges. (CVE-2020-25722) Joseph Sutton discovered that Samba incorrectly handled certain TGS requests. An authenticated attacker could possibly use this issue to cause Samba to crash, resulting in a <a class=\"mh-excerpt-more\" href=\"https:\/\/jirak.net\/wp\/usn-5174-2-samba-regression\/\" title=\"USN-5174-2: Samba regression\">[ more&#8230; ]<\/a><\/p>\n<\/div>","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[586],"tags":[587],"class_list":["post-44592","post","type-post","status-publish","format-standard","hentry","category-ubuntu-usn","tag-ubuntu-usn"],"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/44592","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/comments?post=44592"}],"version-history":[{"count":1,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/44592\/revisions"}],"predecessor-version":[{"id":44593,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/posts\/44592\/revisions\/44593"}],"wp:attachment":[{"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/media?parent=44592"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/categories?post=44592"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jirak.net\/wp\/wp-json\/wp\/v2\/tags?post=44592"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}