{"schema_version":"1.7.3","id":"SUSE-SU-2020:2673-1","published":"2020-09-17T13:33:18Z","modified":"2026-02-04T04:37:51.694123Z","related":["CVE-2019-10197","CVE-2019-10218","CVE-2019-14833","CVE-2019-14847","CVE-2019-14861","CVE-2019-14870","CVE-2019-14902","CVE-2019-14907","CVE-2019-19344","CVE-2020-10700","CVE-2020-10704","CVE-2020-10730","CVE-2020-10745","CVE-2020-10760","CVE-2020-14303"],"upstream":["CVE-2019-10197","CVE-2019-10218","CVE-2019-14833","CVE-2019-14847","CVE-2019-14861","CVE-2019-14870","CVE-2019-14902","CVE-2019-14907","CVE-2019-19344","CVE-2020-10700","CVE-2020-10704","CVE-2020-10730","CVE-2020-10745","CVE-2020-10760","CVE-2020-14303"],"summary":"Security update for samba","details":"This update for samba to version 4.10.17 fixes the following issues:\n\n- Fixed net command unable to negotiate SMB2; (bsc#1174120);\n\t  \n- Update to 4.10.17\n  - CVE-2020-10745: Invalid DNS or NBT queries containing dots use\n    several seconds of CPU each; (bso#14378); (bsc#1173160).\n  - CVE-2020-10730: NULL de-reference in AD DC LDAP server when ASQ\n    and VLV combined; (bso#14364); (bsc#1173159).\n  - CVE-2020-10760: Fix use-after-free in AD DC Global Catalog LDAP\n    server with paged_result or VLV; (bso#14402); (1173161).\n  - CVE-2020-14303: Fix endless loop from empty UDP packet sent to\n    AD DC nbt_server; (bso#14417); (bsc#1173359).\n  - CVE-2020-10730: NULL de-reference in AD DC LDAP server when ASQ\n    and VLV combined, ldb: Bump version to 1.5.8; (bso#14364);\n    (bsc#1173159).\n- Update to 4.10.16\n    s3: lib: Paranoia around use of snprintf copying into a fixed-size buffer\n    from a getenv() pointer.\n    lib:util: Fix smbclient -l basename dir; (bso#14345).\n    Malicous SMB1 server can crash libsmbclient; (bso#14366).\n    s3:libads: Fix ads_get_upn(); (bso#14336).\n    docs-xml: Fix usernames in pam_winbind manpages; (bso#14358).\n    Client tools are not able to read gencache anymore since 4.10; (bso#14370).\n- Update to 4.10.15\n   - CVE-2020-10700: Fix use-after-free in AD DC LDAP server when\n     ASQ and paged_results combined; (bso#14331); (bsc#1169850).\n   - CVE-2020-10704: Fix LDAP Denial of Service (stack overflow) in\n     Samba AD DC; (bso#20454); (bsc#1169851).\n- Update to 4.10.14\n    s3: lib: nmblib. Clean up and harden nmb packet processing; (bso#14239).\n    s3: VFS: full_audit. Use system session_info if called from a\n    temporary share definition; (bso#14283).\n    nmblib: Avoid undefined behaviour in handle_name_ptrs(); (bso#20193).\n    dsdb: Correctly handle memory in objectclass_attrs; (bso#14258).\n    auth: Fix CID 1458418 Null pointer dereferences (REVERSE_INULL),\n    auth: Fix CID 1458420 Null pointer dereferences (REVERSE_INULL); (bso#14247).\n    winbind member (source3) fails local SAM auth with empty domain\n    name; (bso#14247).\n    winbindd: Handling missing idmap in getgrgid(); (bso#14265).\n    lib:util: Log mkdir error on correct debug levels; (bso#14253).\n    wafsamba: Do not use 'rU' as the 'U' is deprecated in\n    Python 3.9; (bso#14266).\n    ctdb-tcp: Make error handling for outbound connection\n    consistent; (bso#14274).\n    Starting ctdb node that was powered off hard before results in\n     recovery loop; (bso#14295).\n- Update to 4.10.13\n    s3: libsmb: Ensure SMB1 cli_qpathinfo2() doesn't return an\n    inode number; (bso#14161).\n    s3: utils: smbtree. Ensure we don't call cli_RNetShareEnum()\n    on an SMB1 connection; (bso#14174).\n    s3: libsmb: Ensure return from net_share_enum_rpc() sets\n    cli->raw_status on error; (bso#14176).\n    s3: smbd: SMB2 - Ensure we use the correct session_id if\n    encrypting an interim response; (bso#14189).\n    s3: smbd: Only set xconn->smb1.negprot.done = true after\n    supported_protocols[protocol].proto_reply_fn() succeeds; (bso#14205).\n    pygpo: Use correct method flags; (bso#14209).\n    s3: Remove now unneeded call to cmdline_messaging_context(); (bso#13925).\n    Incomplete conversion of former parametric options; (bso#14069).\n    Fix sync dosmode fallback in async dosmode codepath; (bso#14070).\n    vfs_fruit returns capped resource fork length; (bso#14171).\n    s3:printing: Fix %J substition; (bso#13745).\n    libnet_join: Add SPNs for additional-dns-hostnames entries; (bso#14116).\n    Avoiding bad call flags with python 3.8, using METH_NOARGS\n    instead of zero; (bso#14209).\n    docs-xml/winbindnssinfo: Clarify interaction with idmap_ad etc; (bso#14122).\n    ctdb-tcp: Close inflight connecting TCP sockets after fork; (bso#14175).\n    s4:dirsync: Fix interaction of dirsync and extended_dn controls; (bso#14153).\n    upgradedns: Ensure lmdb lock files linked; (bso#14199).\n    s3: VFS: glusterfs: Reset nlinks for symlink entries during\n    readdir; (bso#14182).\n    wscript: Remove checks for shm_open and shmget; (bso#14140).\n    libsmbclient: smbc_stat() doesn't return the correct st_mode\n    and also the uid/gid is not filled (SMBv1); (bso#14101).\n    replace: Only link libnsl and libsocket if required; (bso#14168).\n    librpc: Fix string length checking in\n    ndr_pull_charset_to_null(); (bso#14219).\n    heimdal-build: Avoid hard-coded /usr/include/heimdal in\n    asn1_compile-generated code; (bso#13856).\n    ctdb-tcp: Drop tracking of file descriptor for incoming\n    connections; (bso#14175).\n    ctdb-scripts: Strip square brackets when gathering connection\n     info; (bso#14227).\n- Update to 4.10.12\n   - CVE-2019-14902: Replication of ACLs down subtree on AD Directory\n     not automatic; (bso#12497); (bsc#1160850);\n   - CVE-2019-14907: lib/util: Do not print the failed to convert\n     string into the logs; (bso#14208); (bsc#1160888).\n   - CVE-2019-19344: kcc dns scavenging: Fix use after free in\n     dns_tombstone_records_zone; (bso#14050); (bsc#1160852).\n- Update to 4.10.11\n   - CVE-2019-14861: Fix DNSServer RPC server crash; (bso#14138);\n     (bsc#1158108).\n   - CVE-2019-14870: DelegationNotAllowed not being enforced; (bso#14187);\n     (bsc#1158109).\n- Update to 4.10.10\n   - CVE-2019-10218 - s3: libsmb: Protect SMB1 and SMB2 client code\n     from evil server returned names; (bso#14071); (bsc#1144902).\n   - CVE-2019-14833: Use utf8 characters in the unacceptable\n     password; (bso#12438); (bsc#1154289).\n   - CVE-2019-14847 dsdb: Correct behaviour of ranged_results when\n     combined with dirsync; (bso#14040); (bsc#1154598).\n   - CVE-2019-14833 dsdb: Send full password to check password\n     script; (bso#12438); (bsc#1154289).\n- Update to 4.10.9\n    Different Device Id for GlusterFS FUSE mount is causing data\n    loss in CTDB cluster; (bso#13972).\n    winbind: Provide passwd struct for group sid with ID_TYPE_BOTH\n    mapping (again); (bso#14141).\n    smbc_readdirplus() is incompatible with smbc_telldir() and\n    smbc_lseekdir(); (bso#14094).\n    s3: smbclient: Stop an SMB2-connection from blundering into\n    SMB1-specific calls; (bso#14152).\n    s4/scripting: MORE py3 compatible print functions.\n    ldb: Release ldb 1.5.6; (bso#13978).\n    undoduididx: Add 'or later' to warning about using tools from\n    Samba 4.8; (bso#13978).\n    ldb_tdb fails to check error return when parsing pack formats; (bso#13959).\n    ctdb: Fix compilation on systems with glibc robust mutexes; (bso#14038).\n    GPO security filtering based on the groups in Kerberos PAC (but\n    primary group is missing); (bso#11362).\n    Fix spnego fallback from kerberos to ntlmssp in smbd server; (bso#14106).\n    s3-winbindd: fix forest trusts with additional trust attributes; (bso#14130).\n    vfs_glusterfs: Use pthreadpool for scheduling aio operations; (bso#14098).\n    ldb: baseinfo pack format check on init; (bso#13977).\n    ldb: ldbdump key and pack format version comments; (bso#13978).\n    Overlinking libreplace against librt and pthread against every\n    binary or library causes issues; (bso#14140).\n    ctdb-vacuum: Process all records not deleted on a remote node; (bso#14147).\n    classicupgrade: Fix uncaught exception; (bso#14136).\n    fault.c: Improve fault_report message text pointing to our wiki; (bso#14139).\n    s3:client:Use DEVICE_URI, instead of argv[0],for Device URI; (bso#14128).\n    We should send SMB2_NETNAME_NEGOTIATE_CONTEXT_ID negotiation\n    context; (bso#14055).\n    'pam_winbind' with 'krb5_auth' or 'wbinfo -K' doesn't work for\n    users of trusted domains/forests principals' logic; (bso#14124).\n    vfs_glusterfs: Enable profiling for file system operations; (bso#14093).\n    vfs_gpfs: Implement special case for denying owner access to\n    ACL; (bso#14032).\n    Joining Active Directory should not use SAMR to set the\n    password; (bso#13884).\n    s3:libsmb: Do not check the SPNEGO neg token for KRB5; (bso#14106).\n    Overlinking libreplace against librt and pthread against every\n    binary or library causes issues; (bso#14140).\n    'kpasswd' fails when built with MIT Kerberos; (bso#14155).\n    CTDB replies can be lost before nodes are bidirectionally\n    connected; (bso#14084).\n    'ctdb stop' command completes before databases are frozen; (bso#14087).\n    ctdb-tools: Stop deleted nodes from influencing ctdb nodestatus\n    exit code; (bso#14129).\n    s3:ldap: Fix join with don't exists machine account; (bso#14007).\n- Update to 4.10.8\n   - CVE-2019-10197: Permissions check deny can allow user to escape\n     from the share; (bso#14035); (bsc#1141267).\n   - CVE-2019-10197: Permissions check deny can allow user to escape\n     from the share; (bso#14035); (bsc#1141267).\n- Update to 4.10.7\n    Unable to create or rename file/directory inside shares\n    configured with vfs_glusterfs_fuse module; (bso#14010).\n    build: Allow build when '--disable-gnutls' is set; (bso#13844).\n    samba-tool: Add 'import samba.drs_utils' to fsmo.py; (bso#13973).\n    Fix 'Error 32 determining PSOs in system' message on old DB\n    with FL upgrade; (bso#14008).\n    s4/libnet: Fix joining a Windows pre-2008R2 DC; (bso#14021).\n    join: Use a specific attribute order for the DsAddEntry\n    nTDSDSA object; (bso#14046).\n    vfs_catia: Pass stat info to synthetic_smb_fname(); (bso#14015).\n    lookup_name: Allow own domain lookup when flags == 0; (bso#14091).\n    s4 librpc rpc pyrpc: Ensure tevent_context deleted last; (bso#13932).\n    DEBUGC and DEBUGADDC doesn't print into a class specific log\n    file; (bso#13915).\n    Request to keep deprecated option 'server schannel',\n    VMWare Quickprep requires 'auto'; (bso#13949).\n    dbcheck: Fallback to the default tombstoneLifetime of 180 days; (bso#13967).\n    dnsProperty fails to decode values from older Windows versions; (bso#13969).\n    samba-tool: Use only one LDAP modify for dns partition fsmo\n    role transfer; (bso#13973).\n    third_party: Update waf to version 2.0.17; (bso#13960).\n    netcmd: Allow 'drs replicate --local' to create partitions; (bso#14051).\n    ctdb-config: Depend on /etc/ctdb/nodes file; (bso#14017).\n- Update to 4.10.6\n    s3: winbind: Fix crash when invoking winbind idmap scripts; (bso#13956).\n    smbd does not correctly parse arguments passed to dfree and\n    quota scripts; (bso#13964).\n    samba-tool dns: use bytes for inet_ntop; (bso#13965).\n    samba-tool domain provision: Fix --interactive module in\n    python3; (bso#13828).\n    ldb_kv: Skip @ records early in a search full scan; (bso#13893).\n    docs: Improve documentation of 'lanman auth' and 'ntlm auth'\n    connection; (bso#13981).\n    python/ntacls: Use correct 'state directory' smb.conf option\n    instead of 'state dir'; (bso#14002).\n    registry: Add a missing include; (bso#13840).\n    Fix SMB guest authentication; (bso#13944).\n    AppleDouble conversion breaks Resourceforks; (bso#13958).\n    vfs_fruit makes direct use of syscalls like mmap() and pread(); (bso#13968).\n    s3:mdssvc: Fix flex compilation error; (bso#13987).\n    s3/vfs_glusterfs[_fuse]: Avoid using NAME_MAX directly:; (bso#13872).\n    dsdb:samdb: schemainfo update with relax control; (bso#13799).\n    s3:util: Move static file_pload() function to lib/util; (bso#13964).\n    smbd: Fix a panic; (bso#13957).\n    ldap server: Generate correct referral schemes; (bso#12478).\n    s4 dsdb/repl_meta_data: fix use after free in\n    dsdb_audit_add_ldb_value; (bso#13941).\n    s4 dsdb: Fix use after free in\n    samldb_rename_search_base_callback; (bso#13942).\n    dsdb/repl: we need to replicate the whole schema before we can\n    apply it; (bso#12204).\n    ldb: Release ldb 1.5.5; (bso#12478).\n    Schema replication fails if link crosses chunk boundary\n    backwards; (bso#13713).\n    'samba-tool domain schemaupgrade' uses relax control and skips\n    the schemaInfo update provision; (bso#13799).\n    dsdb_audit: avoid printing '... remote host [Unknown]\n    SID [(NULL SID)] ...'; (bso#13916).\n    python/ntacls: We only need security.SEC_STD_READ_CONTROL in\n    order to get the ACL; (bso#13917).\n    s3:loadparm: Ensure to truncate FS Volume Label at multibyte\n    boundary; (bso#13947).\n    Using Kerberos credentials to print using spoolss doesn't work; (bso#13939).\n    wafsamba: Use native waf timer; (bso#13998).\n    ctdb-scripts: Fix tcp_tw_recycle existence check; (bso#13984).\n\nThis update for ldb to version 1.5.8 fixes the following issues:\n\n- Update to 1.5.8\n   - CVE-2020-10730: Fixed a null de-reference in AD DC LDAP server when ASQ and VLV combined (bsc#1173159).\n- Update to 1.5.7\n   - CVE-2020-10700: Fixed a use-after-free in AD DC LDAP server when ASQ and paged_results combined (bsc#1169850).\n- Update to 1.5.6\n   - Fix segfault parsing new pack formats or invalid packed data \n   - Check for new pack formats during startup \n   - Making ldbdump print out pack format info and keys so we have\n    low level visibility for testing in python \n- Update to 1.5.5\n   LDAP_REFERRAL_SCHEME_OPAQUE was added \n   Skip @ records early in a search full scan \n\n\n","affected":[{"package":{"name":"samba","ecosystem":"SUSE:Linux Enterprise High Availability Extension 12 SP5","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.10.17+git.203.862547088ca-3.14.1"}]}],"ecosystem_specific":{"binaries":[{"ctdb":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"ldb","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/ldb&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.5.8-3.5.1"}]}],"ecosystem_specific":{"binaries":[{"libldb-devel":"1.5.8-3.5.1","libndr-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard-devel":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util-devel":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient-devel":"4.10.17+git.203.862547088ca-3.14.1","libwbclient-devel":"4.10.17+git.203.862547088ca-3.14.1","python-ldb":"1.5.8-3.5.1","python-ldb-devel":"1.5.8-3.5.1","samba-core-devel":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"samba","ecosystem":"SUSE:Linux Enterprise Software Development Kit 12 SP5","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.10.17+git.203.862547088ca-3.14.1"}]}],"ecosystem_specific":{"binaries":[{"libldb-devel":"1.5.8-3.5.1","libndr-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt-devel":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard-devel":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util-devel":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient-devel":"4.10.17+git.203.862547088ca-3.14.1","libwbclient-devel":"4.10.17+git.203.862547088ca-3.14.1","python-ldb":"1.5.8-3.5.1","python-ldb-devel":"1.5.8-3.5.1","samba-core-devel":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"ldb","ecosystem":"SUSE:Linux Enterprise Server 12 SP5","purl":"pkg:rpm/suse/ldb&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.5.8-3.5.1"}]}],"ecosystem_specific":{"binaries":[{"ldb-tools":"1.5.8-3.5.1","libdcerpc-binding0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc-binding0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libldb1":"1.5.8-3.5.1","libldb1-32bit":"1.5.8-3.5.1","libndr-krb5pac0":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr0":"4.10.17+git.203.862547088ca-3.14.1","libndr0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2-32bit":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba":"4.10.17+git.203.862547088ca-3.14.1","samba-client":"4.10.17+git.203.862547088ca-3.14.1","samba-client-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-doc":"4.10.17+git.203.862547088ca-3.14.1","samba-libs":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind-32bit":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"samba","ecosystem":"SUSE:Linux Enterprise Server 12 SP5","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.10.17+git.203.862547088ca-3.14.1"}]}],"ecosystem_specific":{"binaries":[{"ldb-tools":"1.5.8-3.5.1","libdcerpc-binding0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc-binding0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libldb1":"1.5.8-3.5.1","libldb1-32bit":"1.5.8-3.5.1","libndr-krb5pac0":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr0":"4.10.17+git.203.862547088ca-3.14.1","libndr0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2-32bit":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba":"4.10.17+git.203.862547088ca-3.14.1","samba-client":"4.10.17+git.203.862547088ca-3.14.1","samba-client-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-doc":"4.10.17+git.203.862547088ca-3.14.1","samba-libs":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind-32bit":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"ldb","ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP5","purl":"pkg:rpm/suse/ldb&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.5.8-3.5.1"}]}],"ecosystem_specific":{"binaries":[{"ldb-tools":"1.5.8-3.5.1","libdcerpc-binding0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc-binding0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libldb1":"1.5.8-3.5.1","libldb1-32bit":"1.5.8-3.5.1","libndr-krb5pac0":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr0":"4.10.17+git.203.862547088ca-3.14.1","libndr0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2-32bit":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba":"4.10.17+git.203.862547088ca-3.14.1","samba-client":"4.10.17+git.203.862547088ca-3.14.1","samba-client-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-doc":"4.10.17+git.203.862547088ca-3.14.1","samba-libs":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind-32bit":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}},{"package":{"name":"samba","ecosystem":"SUSE:Linux Enterprise Server for SAP Applications 12 SP5","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.10.17+git.203.862547088ca-3.14.1"}]}],"ecosystem_specific":{"binaries":[{"ldb-tools":"1.5.8-3.5.1","libdcerpc-binding0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc-binding0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0":"4.10.17+git.203.862547088ca-3.14.1","libdcerpc0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libldb1":"1.5.8-3.5.1","libldb1-32bit":"1.5.8-3.5.1","libndr-krb5pac0":"4.10.17+git.203.862547088ca-3.14.1","libndr-krb5pac0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0":"4.10.17+git.203.862547088ca-3.14.1","libndr-nbt0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0":"4.10.17+git.203.862547088ca-3.14.1","libndr-standard0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libndr0":"4.10.17+git.203.862547088ca-3.14.1","libndr0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0":"4.10.17+git.203.862547088ca-3.14.1","libnetapi0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-credentials0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-errors0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-hostconfig0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-passdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0":"4.10.17+git.203.862547088ca-3.14.1","libsamba-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0":"4.10.17+git.203.862547088ca-3.14.1","libsamdb0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0":"4.10.17+git.203.862547088ca-3.14.1","libsmbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0":"4.10.17+git.203.862547088ca-3.14.1","libsmbconf0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2":"4.10.17+git.203.862547088ca-3.14.1","libsmbldap2-32bit":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0":"4.10.17+git.203.862547088ca-3.14.1","libtevent-util0-32bit":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0":"4.10.17+git.203.862547088ca-3.14.1","libwbclient0-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba":"4.10.17+git.203.862547088ca-3.14.1","samba-client":"4.10.17+git.203.862547088ca-3.14.1","samba-client-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-doc":"4.10.17+git.203.862547088ca-3.14.1","samba-libs":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3":"4.10.17+git.203.862547088ca-3.14.1","samba-libs-python3-32bit":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind":"4.10.17+git.203.862547088ca-3.14.1","samba-winbind-32bit":"4.10.17+git.203.862547088ca-3.14.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/SUSE-SU-2020:2673-1.json"}}],"references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2020/suse-su-20202673-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1141267"},{"type":"REPORT","url":"https://bugzilla.suse.com/1144902"},{"type":"REPORT","url":"https://bugzilla.suse.com/1154289"},{"type":"REPORT","url":"https://bugzilla.suse.com/1154598"},{"type":"REPORT","url":"https://bugzilla.suse.com/1158108"},{"type":"REPORT","url":"https://bugzilla.suse.com/1158109"},{"type":"REPORT","url":"https://bugzilla.suse.com/1160850"},{"type":"REPORT","url":"https://bugzilla.suse.com/1160852"},{"type":"REPORT","url":"https://bugzilla.suse.com/1160888"},{"type":"REPORT","url":"https://bugzilla.suse.com/1169850"},{"type":"REPORT","url":"https://bugzilla.suse.com/1169851"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173159"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173160"},{"type":"REPORT","url":"https://bugzilla.suse.com/1173359"},{"type":"REPORT","url":"https://bugzilla.suse.com/1174120"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-10197"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-10218"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14833"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14847"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14861"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14870"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14902"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-14907"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-19344"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-10700"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-10704"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-10730"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-10745"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-10760"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-14303"}]}