Source | Text Version

QSN-3976-3: samba regression

May 27, 2019

Summary

USN-3976-1 introduced a regression in Samba.

Details

USN-3976-1 fixed a vulnerability in Samba. The update introduced a regression causing Samba to occasionally crash. This update fixes the problem.

We apologize for the inconvenience.

Original advisory details:

Isaac Boukris and Andrew Bartlett discovered that Samba incorrectly checked S4U2Self packets. In certain environments, a remote attacker could possibly use this issue to escalate privileges.

References

https://usn.ubuntu.com/usn/usn-3976-3

https://usn.ubuntu.com/usn/usn-3976-1

https://launchpad.net/bugs/1827924

Update

A general update will usually fix all issues, but to make sure, you can check your current version with:

$ dpkg -l samba

If the current version you have is before 2:4.3.11+dfsg-0ubuntu0.16.04.2, run the following:

$ sudo apt-get update
$ sudo apt-get install samba

Copyright © 2010-2015, OSNEXUS Corporation. All rights reserved.