Novell Home

CVE-2012-6150

Common Vulnerabilities and Exposures

[Previous] [Index] [Next]

Upstream information

CVE-2012-6150 at MITRE

Description

The winbind_name_list_to_sid_string_list function in nsswitch/pam_winbind.c in Samba through 4.1.2 handles invalid require_membership_of group names by accepting authentication by any user, which allows remote authenticated users to bypass intended access restrictions in opportunistic circumstances by leveraging an administrator's pam_winbind configuration-file mistake.

NVD CVSS v2 Base Score: 3.6 (AV:N/AC:H/Au:S/C:P/I:P/A:N)

Novell/SUSE information

Novell Bugzilla entries: 844720, 853347

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
SUSE Linux Enterprise Server 11 SP1 LTSS
  • cifs-mount >= 3.4.3-1.52.3
  • ldapsmb >= 1.34b-11.28.52.3
  • libsmbclient0 >= 3.4.3-1.52.3
  • libtalloc1 >= 3.4.3-1.52.3
  • libtdb1 >= 3.4.3-1.52.3
  • libwbclient0 >= 3.4.3-1.52.3
  • samba >= 3.4.3-1.52.3
  • samba-client >= 3.4.3-1.52.3
  • samba-doc >= 3.4.3-1.52.3
  • samba-krb-printing >= 3.4.3-1.52.3
  • samba-winbind >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SUSE Linux Enterprise Server 11 SP1 LTSS
  • cifs-mount >= 3.4.3-1.52.3
  • ldapsmb >= 1.34b-11.28.52.3
  • libsmbclient0 >= 3.4.3-1.52.3
  • libsmbclient0-32bit >= 3.4.3-1.52.3
  • libtalloc1 >= 3.4.3-1.52.3
  • libtalloc1-32bit >= 3.4.3-1.52.3
  • libtdb1 >= 3.4.3-1.52.3
  • libtdb1-32bit >= 3.4.3-1.52.3
  • libwbclient0 >= 3.4.3-1.52.3
  • libwbclient0-32bit >= 3.4.3-1.52.3
  • samba >= 3.4.3-1.52.3
  • samba-32bit >= 3.4.3-1.52.3
  • samba-client >= 3.4.3-1.52.3
  • samba-client-32bit >= 3.4.3-1.52.3
  • samba-doc >= 3.4.3-1.52.3
  • samba-krb-printing >= 3.4.3-1.52.3
  • samba-winbind >= 3.4.3-1.52.3
  • samba-winbind-32bit >= 3.4.3-1.52.3
Builds
SAT Patch Nr: 9117
SUSE Linux Enterprise Software Development Kit 11 SP2
  • libldb-devel >= 3.6.3-0.33.39.1
  • libnetapi-devel >= 3.6.3-0.33.39.1
  • libnetapi0 >= 3.6.3-0.33.39.1
  • libsmbclient-devel >= 3.6.3-0.33.39.1
  • libsmbsharemodes-devel >= 3.6.3-0.33.39.1
  • libsmbsharemodes0 >= 3.6.3-0.33.39.1
  • libtalloc-devel >= 3.6.3-0.33.39.1
  • libtdb-devel >= 3.6.3-0.33.39.1
  • libtevent-devel >= 3.6.3-0.33.39.1
  • libwbclient-devel >= 3.6.3-0.33.39.1
  • samba-devel >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Desktop 11 SP2
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Desktop 11 SP2
  • libldb1 >= 3.6.3-0.33.39.1
  • libldb1-32bit >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-32bit >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-32bit >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-32bit >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-32bit >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libtevent0-32bit >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-32bit >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-32bit >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-32bit >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-32bit >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2 for VMware
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP2 for VMware
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-32bit >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-32bit >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-32bit >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-32bit >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libtevent0-32bit >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-32bit >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-32bit >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-32bit >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-32bit >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Server 11 SP2
  • ldapsmb >= 1.34b-12.33.39.1
  • libldb1 >= 3.6.3-0.33.39.1
  • libsmbclient0 >= 3.6.3-0.33.39.1
  • libsmbclient0-x86 >= 3.6.3-0.33.39.1
  • libtalloc1 >= 3.4.3-1.50.1
  • libtalloc1-x86 >= 3.4.3-1.50.1
  • libtalloc2 >= 3.6.3-0.33.39.1
  • libtalloc2-x86 >= 3.6.3-0.33.39.1
  • libtdb1 >= 3.6.3-0.33.39.1
  • libtdb1-x86 >= 3.6.3-0.33.39.1
  • libtevent0 >= 3.6.3-0.33.39.1
  • libwbclient0 >= 3.6.3-0.33.39.1
  • libwbclient0-x86 >= 3.6.3-0.33.39.1
  • samba >= 3.6.3-0.33.39.1
  • samba-client >= 3.6.3-0.33.39.1
  • samba-client-x86 >= 3.6.3-0.33.39.1
  • samba-doc >= 3.6.3-0.33.39.1
  • samba-krb-printing >= 3.6.3-0.33.39.1
  • samba-winbind >= 3.6.3-0.33.39.1
  • samba-winbind-x86 >= 3.6.3-0.33.39.1
  • samba-x86 >= 3.6.3-0.33.39.1
Builds
SAT Patch Nr: 8656
SUSE Linux Enterprise Software Development Kit 11 SP3
  • libldb-devel >= 3.6.3-0.46.1
  • libnetapi-devel >= 3.6.3-0.46.1
  • libnetapi0 >= 3.6.3-0.46.1
  • libsmbclient-devel >= 3.6.3-0.46.1
  • libsmbsharemodes-devel >= 3.6.3-0.46.1
  • libsmbsharemodes0 >= 3.6.3-0.46.1
  • libtalloc-devel >= 3.6.3-0.46.1
  • libtdb-devel >= 3.6.3-0.46.1
  • libtevent-devel >= 3.6.3-0.46.1
  • libwbclient-devel >= 3.6.3-0.46.1
  • samba-devel >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Desktop 11 SP3
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Desktop 11 SP3
  • libldb1 >= 3.6.3-0.46.1
  • libldb1-32bit >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-32bit >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-32bit >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-32bit >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libtevent0-32bit >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-32bit >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-32bit >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-32bit >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-32bit >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP3 for VMware
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-32bit >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-32bit >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-32bit >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libtevent0-32bit >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-32bit >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-32bit >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-32bit >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-32bit >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655
SUSE Linux Enterprise Server 11 SP3
  • ldapsmb >= 1.34b-12.46.1
  • libldb1 >= 3.6.3-0.46.1
  • libsmbclient0 >= 3.6.3-0.46.1
  • libsmbclient0-x86 >= 3.6.3-0.46.1
  • libtalloc2 >= 3.6.3-0.46.1
  • libtalloc2-x86 >= 3.6.3-0.46.1
  • libtdb1 >= 3.6.3-0.46.1
  • libtdb1-x86 >= 3.6.3-0.46.1
  • libtevent0 >= 3.6.3-0.46.1
  • libwbclient0 >= 3.6.3-0.46.1
  • libwbclient0-x86 >= 3.6.3-0.46.1
  • samba >= 3.6.3-0.46.1
  • samba-client >= 3.6.3-0.46.1
  • samba-client-x86 >= 3.6.3-0.46.1
  • samba-doc >= 3.6.3-0.46.1
  • samba-krb-printing >= 3.6.3-0.46.1
  • samba-winbind >= 3.6.3-0.46.1
  • samba-winbind-x86 >= 3.6.3-0.46.1
  • samba-x86 >= 3.6.3-0.46.1
Builds
SAT Patch Nr: 8655

© 2014 Novell