SuSE: 2015:0386-1: important: Samba
Summary
Samba has been updated to fix one security issue: * CVE-2015-0240: Don't call talloc_free on an uninitialized pointer (bnc#917376). Additionally, these non-security issues have been fixed: * Realign the winbind request structure following require_membership_of field expansion (bnc#913001). * Reuse connections derived from DFS referrals (bso#10123, fate#316512). * Set domain/workgroup based on authentication callback value (bso#11059). * Fix spoolss error response marshalling (bso#10984). * Fix spoolss EnumJobs and GetJob responses (bso#10905, bnc#898031). * Fix handling of bad EnumJobs levels (bso#10898). * Fix small memory-leak in the background print process (bnc#899558). * Prune idle or hung connections older than "winbind request timeout" (bso#3204, bnc#872912). * Build: disable mmap on s390 systems (bnc#886193, bnc#882356). * Only update the prin...
Read the Full AdvisoryReferences
#872912 #882356 #883870 #886193 #898031 #899558
#913001 #917376
Cross- CVE-2015-0240
Affected Products:
SUSE Linux Enterprise Server 11 SP2 LTSS
https://www.suse.com/security/cve/CVE-2015-0240.html
https://bugzilla.suse.com/872912
https://bugzilla.suse.com/882356
https://bugzilla.suse.com/883870
https://bugzilla.suse.com/886193
https://bugzilla.suse.com/898031
https://bugzilla.suse.com/899558
https://bugzilla.suse.com/913001
https://bugzilla.suse.com/917376
https://scc.suse.com:443/patches/