{"affected":[{"ecosystem_specific":{"binaries":[{"libdcerpc-binding0":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc-binding0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc-samr-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc-samr0":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc0":"4.11.14+git.247.8c858f7ee14-4.19.1","libdcerpc0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-krb5pac-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-krb5pac0":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-krb5pac0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-nbt-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-nbt0":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-nbt0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-standard-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-standard0":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr-standard0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr0":"4.11.14+git.247.8c858f7ee14-4.19.1","libndr0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libnetapi-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libnetapi0":"4.11.14+git.247.8c858f7ee14-4.19.1","libnetapi0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-credentials-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-credentials0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-credentials0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-errors-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-errors0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-errors0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-hostconfig-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-hostconfig0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-hostconfig0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-passdb-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-passdb0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-passdb0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-policy-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-policy-python3-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-policy0-python3":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-util-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-util0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamba-util0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamdb-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamdb0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsamdb0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbclient-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbclient0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbconf-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbconf0":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbconf0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbldap-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbldap2":"4.11.14+git.247.8c858f7ee14-4.19.1","libsmbldap2-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libtevent-util-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libtevent-util0":"4.11.14+git.247.8c858f7ee14-4.19.1","libtevent-util0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","libwbclient-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","libwbclient0":"4.11.14+git.247.8c858f7ee14-4.19.1","libwbclient0-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","samba":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-ceph":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-client":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-core-devel":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-dsdb-modules":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-libs":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-libs-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-libs-python3":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-python3":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-winbind":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-winbind-32bit":"4.11.14+git.247.8c858f7ee14-4.19.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Basesystem 15 SP2","name":"samba","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.11.14+git.247.8c858f7ee14-4.19.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"samba-ad-dc":"4.11.14+git.247.8c858f7ee14-4.19.1","samba-dsdb-modules":"4.11.14+git.247.8c858f7ee14-4.19.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Python 2 15 SP2","name":"samba","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%202%2015%20SP2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.11.14+git.247.8c858f7ee14-4.19.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"ctdb":"4.11.14+git.247.8c858f7ee14-4.19.1"}]},"package":{"ecosystem":"SUSE:Linux Enterprise High Availability Extension 15 SP2","name":"samba","purl":"pkg:rpm/suse/samba&distro=SUSE%20Linux%20Enterprise%20High%20Availability%20Extension%2015%20SP2"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"4.11.14+git.247.8c858f7ee14-4.19.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for samba fixes the following issues:\n\n- CVE-2021-20277: Fixed an out of bounds read in ldb_handler_fold (bsc#1183574).\n- CVE-2021-20254: Fixed a buffer overrun in sids_to_unixids() (bsc#1184677).\n- CVE-2020-27840: Fixed an unauthenticated remote heap corruption via bad DNs (bsc#1183572).\n- Avoid free'ing our own pointer in memcache when memcache_trim attempts to reduce cache size (bsc#1179156).\n- s3-libads: use dns name to open a ldap session (bsc#1184310).\n- Adjust smbcacls '--propagate-inheritance' feature to align with upstream (bsc#1178469).\n","id":"SUSE-SU-2021:1444-1","modified":"2021-04-29T14:17:54Z","published":"2021-04-29T14:17:54Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2021/suse-su-20211444-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1178469"},{"type":"REPORT","url":"https://bugzilla.suse.com/1179156"},{"type":"REPORT","url":"https://bugzilla.suse.com/1183572"},{"type":"REPORT","url":"https://bugzilla.suse.com/1183574"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184310"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184677"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-27840"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-20254"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-20277"}],"related":["CVE-2020-27840","CVE-2021-20254","CVE-2021-20277"],"summary":"Security update for samba","upstream":["CVE-2020-27840","CVE-2021-20254","CVE-2021-20277"]}